Hacker News new | ask | show | jobs
by TZubiri 618 days ago
"CVE-2023-33246 is a vulnerability found in RocketMQ, which is a software that manages messages"

A more appropriate but less clickbaity title would be "Stealthy malware targetting servers running RocketMQ"

2 comments

The description of the payloads and of the hiding methods was educational though. Other malwares likely use similar techniques after the initial penetration.
The entry method is distinct from the exploitation or persistence method.

Like, how one picks a lock versus how one lives rent free in the attic without discovery.

Theyre not specifically dependent activities.