Jenkins Hit as Atlassian Confluence Cyberattacks Widen
#1
Information 
Quote:A just-patched, critical remote code-execution (RCE) vulnerability in the Atlassian Confluence server platform is suffering wide-scale exploitation, the Feds have warned – as evidenced by an attack on the popular Jenkins open-source automation engine.
 
Atlassian Confluence is a collaboration platform where business teams can organize its work in one place: “Dynamic pages give your team a place to create, capture, and collaborate on any project or idea,” according to the website. “Spaces help your team structure, organize and share work, so every team member has visibility into institutional knowledge and access to the information they need to do their best work.”
 
In other words, it can house a treasure trove of sensitive business information as well as supply-chain information that could be used for follow-on attacks on partners, suppliers and customers.

For its part, Jenkins identified a “successful attack against our deprecated Confluence service,” it said in a statement over the weekend. Thankfully, “we have no reason to believe that any Jenkins releases, plugins or source code have been affected,” the team added.

Read more: Jenkins Hit as Atlassian Confluence Cyberattacks Widen | Threatpost
[-] The following 2 users say Thank You to silversurfer for this post:
  • Deep900, harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
QOwnNotes
26.3.20  Fixed XM...Kool — 08:07
QOwnNotes
26.3.18  Added op...Kool — 08:37
Mozilla Firefox Browser 149.0
Mozilla Firefox Br...harlan4096 — 08:09
AxCrypt 3.0.0.82
AxCrypt 3.0.0.82: ...harlan4096 — 08:07
uBOLite 2026.323.2044 (already available...
uBOLite 2026.323.2...harlan4096 — 08:06

[-]
Birthdays
Today's Birthdays
avatar (44)gapedDow
avatar (38)snorydar
Upcoming Birthdays
avatar (46)qaqapeti

[-]
Online Staff
There are no staff members currently online.

>