Old flaw turns unpatched JBoss servers into botnet

A worm that is exploiting JBoss servers witch was patched in April 2010 and servers witch have not been patched have a major security flaw “The worm affects users of JBoss Application Server who have not correctly secured their JMX consoles as well as users of older, unpatched versions of JBoss enterprise products,” it can install a worm witch will install a remote access tool giving an attacker full control over the infected server. I don’t think this should be a modern day problem still because who doesn’t update their server with high threat security downloads


One thought on “Old flaw turns unpatched JBoss servers into botnet

  1. This really shouldn’t matter being that it effects such outdated software, but in reality I’m sure there are JBoss servers outdated waiting to be hijacked.

