Overview Recently, NSFOCUS CERT detected that OpenSSH released a security update and fixed a command injection vulnerability caused by malicious shell characters (CVE-2023-51385), with a CVSS score of 9.8; Since there is no security filtering of username and hostname input represented by %h,%u in OpenSSH's ProxyCommand command, command injection may...
Blog
Apache OFBiz Arbitrary File Reading and Remote Code Execution Vulnerabilities (CVE-2023-50968/CVE-2023-51467) Alert
Overview Recently, NSFOCUS CERT detected that Apache officially released a security announcement and fixed two high-risk vulnerabilities in Apache Ofbiz. CVE-2023-50968: Due to problems in Apache Software Foundation, unauthorized attackers can read files and carry out SSRF attacks when operating uri calls; CVE-2023-51467: Due to a privilege verification logic error...
Introduction to NSFOCUS WAF SNMP
Simple Network Management Protocol (SNMP) is an application-layer protocol that transmits management data between network devices. SNMP belongs to the Transmission Control Protocol/Internet Protocol (TCP/IP) family and is one of the most widely used network protocols for managing and monitoring network components across a variety of industries. The majority of...
NSFOCUS Recognized as One of Representative SOAR Vendors in Frost & Sullivan’s Report
SANTA CLARA, Calif., Dec 21, 2023 – NSFOCUS proudly announces its recognition in Frost & Sullivan's latest report Insights for CISOs: Modernizing Security Operations Centers with Security Orchestration and Automated Response as a representative vendor. This insightful report delves into the growth environment, enterprise application value, SOAR solution benefits, the...
xorbot: A Stealthy Botnet Family That Defies Detection
I. Background of xorbot In November 2023, NSFOCUS Global Threat Hunting System detected that a type of elf file was being widely distributed and accompanied by a large amount of suspected encrypted outbound communication traffic. However, the detection rate of mainstream antivirus engines on this file was close to zero, which...
Hong Kong Cybersecurity Symposium 2023
Cybersecurity Symposium 2023, Dec 14, Convention Hall @Hong Kong Convention and Exhibition Centre, Hong Kong The Cybersecurity Symposium is co-organised by the Office of the Government Chief Information Officer (OGCIO) and Hong Kong Internet Registration Corporation Limited (HKIRC). It aims to unite quangos, enterprises and other local organizations in Hong Kong to address the...





