Hackers, going by the online name of Lab Dookhtegan, have revealed details about the inner workings of a cyber-espionage group mostly known in the security community as OilRig, APT34, and HelixKitten, linked to the Iranian government.
Alexander Heid, White Hat Hacker and Chief Research Officer at SecurityScorecard:
Alex advises that “Companies and enterprises who run Windows IIS servers and ASPX applications should make use of the leaked codebase to determine if any of the webshells appear on their servers. Companies should also take heed that the external perimeter of their enterprise – specifically the web app – is still an effective and powerful vector of attack. WAFs can be evaded, and secure frameworks can be made vulnerable by coding mistakes.”
The opinions expressed in this post belongs to the individual contributors and do not necessarily reflect the views of Information Security Buzz.