• luciddaemon@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    34
    ·
    9 hours ago

    Seeing the diagram, it only attacks servers with misconfigured rocketMQ or CVE-2023-33426, which is already patched. Am I understanding this correctly?

    • cron@feddit.org
      link
      fedilink
      English
      arrow-up
      8
      ·
      8 hours ago

      It probably has a large database of exploits it can use. The article claims 20k, but this seems to high for me.