NGINX servers hijacked in global campaign to redirect traffic



  • DataDog reports attackers hijacking NGINX configurations to reroute traffic through malicious infrastructure
  • Campaign targets Asian government and education sectors, enabling theft of session tokens, cookies, and credentials
  • Hijacked traffic used for phishing, malware injection, ad fraud, and proxying further attacks

Cybercriminals are targeting NGINX servers, rerouting legitimate traffic through their malicious infrastructure, experts have warned.

Security researchers at DataDog Security Labs found the attackers are focused primarily on Asian targets in the government and education industries.


https://cdn.mos.cms.futurecdn.net/B73DML5s9XT2asace74Gnd-1920-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img