Hackers Exploit Severe PHP Flaw to Deploy Quasar RAT and XMRig Miners
Threat actors are delivering remote access trojans (RATs) like Quasar RAT and bitcoin miners by taking advantage of a serious security hole in PHP.
The PHP argument injection vulnerability, which has been given the CVE identifier CVE-2024-4577, affects Windows-based systems operating in CGI mode and may enable remote attackers to execute arbitrary code.
According to cybersecurity firm Bitdefender, since late last year, there has been a notable increase in exploitation attempts against CVE-2024-4577, with Taiwan accounting for 54.65% of these, Hong Kong for 27.06%, Brazil for 16.39%, Japan for 1.57 percent, and India for 0.33 percent.
Approximately 15% of the exploitation attempts that were found were simple vulnerability testing read more about Hackers Exploit Severe PHP Flaw to ...

