Black hat hackers attack local websites using new Drupal exploit called Drupalgeddon2


Various black hat hackers attacked multiple local websites last April 21, 2018, leading to the defacement and leakage of sensitive information on some websites.

The Drupal security team released patches on March 28, 2018 for CVE-2018–7600, also known as Drupalgeddon2, an unauthenticated remote code execution vulnerability in Drupal core. This vulnerability affects Drupal versions 6, 7 and 8.

Secuna strongly recommends users to apply all critical patches and fixes that vendors provide for security issues as soon as possible. These patches will provide the strongest level of defense against any potential attacks like this one.

For more information, visit https://www.drupal.org/sa-core-2018-002.

Here are the list of Hacked Local Websites:

Government

Academe Private