* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, January 1, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    2025 Year in Review: The Most Unforgettable Entertainment Moments That Captivated Audiences

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    Score Entertainment officials now projecting late spring opening for Humble location – Community Impact | News

    Entertainment Officials Reveal Exciting Late Spring Opening for Humble Location

    Tyler Perry’s accuser sent messages of gratitude and friendship years after alleged assault – Seattle Post-Intelligencer

    Tyler Perry’s Accuser Shares Message of Gratitude and Friendship Years After Alleged Assault

    Entertainment – Laredo Morning Times

    Please provide the article title you’d like me to rewrite

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Experience the Future of Flavor: Bellevue’s New Matcha Café with AI-Powered Brewing

    Bacteriophage technology could reduce Salmonella in poultry – WATTPoultry.com

    How Bacteriophage Technology Is Set to Transform Salmonella Control in Poultry

    Marvell Technology: Mr. Market’s Lagging Sentiment (NASDAQ:MRVL) – Seeking Alpha

    Marvell Technology: Unpacking the Decline in Market Sentiment

    The Technological Rivalry Between The US And China – Seeking Alpha

    The Fierce Tech Battle Shaping the Future Between the US and China

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    How technology is changing the wine tasting game in Temecula – CBS News

    How Technology is Transforming the Wine Tasting Experience in Temecula

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    2025 Year in Review: The Most Unforgettable Entertainment Moments That Captivated Audiences

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    From fake heiress to fugitive: Former employees detail alleged long con blamed on true crime producer – NBC News

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    New music venues, soccer stadium, shopping centers to debut in 2026 – Greenville Online

    Score Entertainment officials now projecting late spring opening for Humble location – Community Impact | News

    Entertainment Officials Reveal Exciting Late Spring Opening for Humble Location

    Tyler Perry’s accuser sent messages of gratitude and friendship years after alleged assault – Seattle Post-Intelligencer

    Tyler Perry’s Accuser Shares Message of Gratitude and Friendship Years After Alleged Assault

    Entertainment – Laredo Morning Times

    Please provide the article title you’d like me to rewrite

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Experience the Future of Flavor: Bellevue’s New Matcha Café with AI-Powered Brewing

    Bacteriophage technology could reduce Salmonella in poultry – WATTPoultry.com

    How Bacteriophage Technology Is Set to Transform Salmonella Control in Poultry

    Marvell Technology: Mr. Market’s Lagging Sentiment (NASDAQ:MRVL) – Seeking Alpha

    Marvell Technology: Unpacking the Decline in Market Sentiment

    The Technological Rivalry Between The US And China – Seeking Alpha

    The Fierce Tech Battle Shaping the Future Between the US and China

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    Nevada: New gaming board chairman knows the importance of getting technology OK’d quickly – CDC Gaming

    How technology is changing the wine tasting game in Temecula – CBS News

    How Technology is Transforming the Wine Tasting Experience in Temecula

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Hackers exploit 2018 ThinkPHP flaws to install ‘Dama’ web shells

June 7, 2024
in Technology
Hackers exploit 2018 ThinkPHP flaws to install ‘Dama’ web shells
Share on FacebookShare on Twitter

HackerImage: Midjourney

Chinese threat actors are targeting ThinkPHP applications vulnerable to CVE-2018-20062 and CVE-2019-9082 to install a persistent web shell named Dama.

The web shell enables further exploitation of the breached endpoints, such as enlisting them as part of the attackers’ infrastructure to evade detection in subsequent operations.

The first signs of this activity date back to October 2023, but according to Akamai analysts monitoring it, the malicious activity has recently expanded and intensified.

Targeting old vulnerabilities

ThinkPHP is an open-source web application development framework that is particularly popular in China.

CVE-2018-20062, fixed in December 2018, is an issue discovered in NoneCMS 1.3, allowing remote attackers to execute arbitrary PHP code via crafted use of the filter parameter.

CVE-2019-9082 impacts ThinkPHP 3.2.4 and older, used in Open Source BMS 1.1.1., is a remote command execution problem addressed in February 2019.

The two flaws are leveraged in this campaign to enable the attackers to perform remote code execution, impacting the underlying content management systems (CMS) on the target endpoints.

Specifically, the attackers exploit the bugs to download a text file named “public.txt,” which, in reality, is the obfuscated Dama web shell saved as “roeter.php.”

The payload is downloaded from compromised servers located in Hong Kong and provides the attackers with remote server control following a simple authentication step using the password “admin.”

Akamai says the servers delivering the payloads are infected themselves with the same web shell, so it appears that compromised systems are turned into nodes in the attacker’s infrastructure.

The Dama web shell

Dama has advanced capabilities enabling the threat actors to navigate the file system on the compromised server, upload files, and gather system data, essentially aiding in privilege escalation.

It can also perform network port scanning, access databases, and bypass disabled PHP functions for shell command execution.

The Dama interfaceThe Dama interface
​​​​​​​Source: Akamai

A notable omission from Dama’s capabilities is the lack of a command-line interface, which would allow threat actors a more hands-on approach to executing commands.

Akamai notes that this missing functionality is notable given Dama’s otherwise extensive functionality.

Mitigation

Exploiting 6-year-old flaws serves as another reminder of the persistent problem of poor vulnerability management, as attackers, in this case, leverage security vulnerabilities patched a long time ago.

The recommended action for potentially impacted organizations is to move to the most recent ThinkPHP, version 8.0, which is safe against known remote code execution bugs.

Akamai also notes that the targeting scope of this campaign is broad, even impacting systems not using ThinkPHP, which suggests opportunistic motives.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : BleepingComputer – https://www.bleepingcomputer.com/news/security/hackers-exploit-2018-thinkphp-flaws-to-install-dama-web-shells/

Tags: Exploithackerstechnology
Previous Post

Ukraine says hackers abuse SyncThing data sync tool to steal data

Next Post

Los Angeles Unified School District investigates data theft claims

Sicily Lifestyle: A Guide to Trends, Cinema, and Luxury Tours – Hipwee

January 1, 2026

Experience the Future of Flavor: Bellevue’s New Matcha Café with AI-Powered Brewing

January 1, 2026

The Most Unforgettable Sports Moments That Shaped 2025: A Year in Review

January 1, 2026

Why ‘Auld Lang Syne’ Still Unites the World at Midnight

January 1, 2026

Flu Cases Soar Amid Widespread Protests Fueling Iran’s Economic Turmoil

January 1, 2026

2025 Year in Review: The Most Unforgettable Entertainment Moments That Captivated Audiences

January 1, 2026

Child in Polk County Shows Measles Symptoms, Health Officials Confirm

January 1, 2026

Newsom’s rollercoaster year: LA fires, Trump battles and a housing breakthrough – CalMatters

January 1, 2026

Washington Department of Ecology Implements New Battery Stewardship Rule to Boost Sustainability

January 1, 2026

Exciting Noon Balloon Drop for Kids to Ring in the New Year at Gateway to Science!

January 1, 2026

Categories

Archives

January 2026
M T W T F S S
 1234
567891011
12131415161718
19202122232425
262728293031  
« Dec    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (998)
  • Economy (1,017)
  • Entertainment (21,894)
  • General (19,071)
  • Health (10,057)
  • Lifestyle (1,030)
  • News (22,149)
  • People (1,023)
  • Politics (1,031)
  • Science (16,232)
  • Sports (21,518)
  • Technology (16,000)
  • World (1,006)

Recent News

Sicily Lifestyle: A Guide to Trends, Cinema, and Luxury Tours – Hipwee

January 1, 2026

Experience the Future of Flavor: Bellevue’s New Matcha Café with AI-Powered Brewing

January 1, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version