home.social

#weblogic — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #weblogic, aggregated by home.social.

fetched live
  1. CISA warns that attackers are exploiting a critical Oracle HTTP Server and WebLogic proxy flaw that requires no login. Federal agencies must patch by August 27.

    Listen/Read: hackread.com/cisa-warns-agenci

  2. CISA warns that attackers are exploiting a critical Oracle HTTP Server and WebLogic proxy flaw that requires no login. Federal agencies must patch by August 27.

    Listen/Read: hackread.com/cisa-warns-agenci

    #CyberSecurity #CISA #Oracle #WebLogic #Vulnerability

  3. CISA warns that attackers are exploiting a critical Oracle HTTP Server and WebLogic proxy flaw that requires no login. Federal agencies must patch by August 27.

    Listen/Read: hackread.com/cisa-warns-agenci

    #CyberSecurity #CISA #Oracle #WebLogic #Vulnerability

  4. CISA warns that attackers are exploiting a critical Oracle HTTP Server and WebLogic proxy flaw that requires no login. Federal agencies must patch by August 27.

    Listen/Read: hackread.com/cisa-warns-agenci

    #CyberSecurity #CISA #Oracle #WebLogic #Vulnerability

  5. CISA warns that attackers are exploiting a critical Oracle HTTP Server and WebLogic proxy flaw that requires no login. Federal agencies must patch by August 27.

    Listen/Read: hackread.com/cisa-warns-agenci

    #CyberSecurity #CISA #Oracle #WebLogic #Vulnerability

  6. CISA has added Oracle CVE-2026-21962 to the KEV catalog. CVSS 10.0. This critical flaw in WebLogic Server allows unauthenticated access and is confirmed actively exploited. Federal remediation deadline is August 27, but every WebLogic deployment should be treated as urgent. Patch or isolate immediately.

    #OracleCVE202621962 #WebLogic #CISA #KnownExploitedVulnerabilities

    cyberworldops.eu/en/oracle-cve

  7. CISA has added Oracle CVE-2026-21962 to the KEV catalog. CVSS 10.0. This critical flaw in WebLogic Server allows unauthenticated access and is confirmed actively exploited. Federal remediation deadline is August 27, but every WebLogic deployment should be treated as urgent. Patch or isolate immediately.

    #OracleCVE202621962 #WebLogic #CISA #KnownExploitedVulnerabilities

    cyberworldops.eu/en/oracle-cve

  8. CloudSEK honeypots confirm active attacks, with threat actors also recycling ancient WebLogic RCE charges dating back to 2017 and 2020.

    Sentence is immediate: patch CVE-2026-21962 now and audit your exposure to CVE-2020-14882/14883, CVE-2020-2551, and CVE-2017-10271 before this court loses what little patience remains.

    Reward: You've received the Gavel of Grudging Compliance — equip it or face contempt charges.

    #CyberSecurity #Oracle #WebLogic #ZeroDay #Vulnerability #CriticalHit (2/2)

  9. CloudSEK honeypots confirm active attacks, with threat actors also recycling ancient WebLogic RCE charges dating back to 2017 and 2020.

    Sentence is immediate: patch CVE-2026-21962 now and audit your exposure to CVE-2020-14882/14883, CVE-2020-2551, and CVE-2017-10271 before this court loses what little patience remains.

    Reward: You've received the Gavel of Grudging Compliance — equip it or face contempt charges.

    #CyberSecurity #Oracle #WebLogic #ZeroDay #Vulnerability #CriticalHit (2/2)

  10. CloudSEK honeypots confirm active attacks, with threat actors also recycling ancient WebLogic RCE charges dating back to 2017 and 2020.

    Sentence is immediate: patch CVE-2026-21962 now and audit your exposure to CVE-2020-14882/14883, CVE-2020-2551, and CVE-2017-10271 before this court loses what little patience remains.

    Reward: You've received the Gavel of Grudging Compliance — equip it or face contempt charges.

    #CyberSecurity #Oracle #WebLogic #ZeroDay #Vulnerability #CriticalHit (2/2)

  11. 🚨 Kritischer Security Alert (CVSS 10.0)
    CISA warnt vor Angriffen auf Oracle HTTP Server & WebLogic Proxy Plug-in (CVE-2026-21962).

    Risiko: Path Traversal & Remote Code Execution ohne Authentifizierung (Vollständige Übernahme).
    Status: Exploits/PoC öffentlich auf GitHub.
    ⚡Updates aus dem Oracle Critical Patch Update (Januar!!!) umgehend einspielen!

    #ITSecurity #CyberSecurity #Oracle #WebLogic #CISA #SysAdmin #PatchManagement

    heise.de/news/Attacken-auf-Ora

  12. 🚨 Kritischer Security Alert (CVSS 10.0)
    CISA warnt vor Angriffen auf Oracle HTTP Server & WebLogic Proxy Plug-in (CVE-2026-21962).

    Risiko: Path Traversal & Remote Code Execution ohne Authentifizierung (Vollständige Übernahme).
    Status: Exploits/PoC öffentlich auf GitHub.
    ⚡Updates aus dem Oracle Critical Patch Update (Januar!!!) umgehend einspielen!

    #ITSecurity #CyberSecurity #Oracle #WebLogic #CISA #SysAdmin #PatchManagement

    heise.de/news/Attacken-auf-Ora

  13. 📰 Critical Oracle WebLogic Flaw (CVSS 10.0) Poses Severe Edge-Exposure Risk

    🚨 CRITICAL FLAW: A CVSS 10.0 vulnerability (CVE-2026-21962) in Oracle WebLogic's Proxy Plug-in is under active exploitation. The flaw allows unauthenticated attackers to compromise edge servers. Patch immediately! #Oracle #WebLogic #CyberSecurity #V...

    🌐 cyber[.]netsecops[.]io

    🔗 cyber.netsecops.io/articles/or

  14. 📰 Critical Oracle WebLogic Flaw (CVSS 10.0) Poses Severe Edge-Exposure Risk

    🚨 CRITICAL FLAW: A CVSS 10.0 vulnerability (CVE-2026-21962) in Oracle WebLogic's Proxy Plug-in is under active exploitation. The flaw allows unauthenticated attackers to compromise edge servers. Patch immediately! #Oracle #WebLogic #CyberSecurity #V...

    🌐 cyber[.]netsecops[.]io

    🔗 cyber.netsecops.io/articles/or

  15. Our next #JCON2025 session is live: 'Migrating From #Java EE - to #SpringBoot Or Something Else?' with Ondro Mihályi

    Many companies use old and expensive Java EE servers like #WebSphere or #WebLogic. If you're considering moving…

    Grab your coffee and hit play: youtu.be/tP9RMcW1O4Y

    #JCON

  16. Our next #JCON2025 session is live: 'Migrating From #Java EE - to #SpringBoot Or Something Else?' with Ondro Mihályi

    Many companies use old and expensive Java EE servers like #WebSphere or #WebLogic. If you're considering moving…

    Grab your coffee and hit play: youtu.be/tP9RMcW1O4Y

    #JCON

  17. Our next #JCON2025 session is live: 'Migrating From #Java EE - to #SpringBoot Or Something Else?' with Ondro Mihályi

    Many companies use old and expensive Java EE servers like #WebSphere or #WebLogic. If you're considering moving…

    Grab your coffee and hit play: youtu.be/tP9RMcW1O4Y

    #JCON

  18. Our next #JCON2025 session is live: 'Migrating From #Java EE - to #SpringBoot Or Something Else?' with Ondro Mihályi

    Many companies use old and expensive Java EE servers like #WebSphere or #WebLogic. If you're considering moving…

    Grab your coffee and hit play: youtu.be/tP9RMcW1O4Y

    #JCON

  19. Обнови JDK — живи спокойно. И Libercat тоже

    Если вы держите свои продакшн-инстансы на Axiom JDK и Libercat, ловите апдейт: вышли свежие релизы безопасности Java-стека. Делимся, что внутри и почему это важно.

    habr.com/ru/companies/axiomjdk

    #axiomjdk #axiom_jdk #libercat #обновление #сервер_приложений #jboss #weblogic #websphere #безопасность #уязвимости

  20. Обнови JDK — живи спокойно. И Libercat тоже

    Если вы держите свои продакшн-инстансы на Axiom JDK и Libercat, ловите апдейт: вышли свежие релизы безопасности Java-стека. Делимся, что внутри и почему это важно.

    habr.com/ru/companies/axiomjdk

    #axiomjdk #axiom_jdk #libercat #обновление #сервер_приложений #jboss #weblogic #websphere #безопасность #уязвимости

  21. Обнови JDK — живи спокойно. И Libercat тоже

    Если вы держите свои продакшн-инстансы на Axiom JDK и Libercat, ловите апдейт: вышли свежие релизы безопасности Java-стека. Делимся, что внутри и почему это важно.

    habr.com/ru/companies/axiomjdk

    #axiomjdk #axiom_jdk #libercat #обновление #сервер_приложений #jboss #weblogic #websphere #безопасность #уязвимости

  22. #Oracle has issued a warning to users of its #WebLogic Server, urging them to immediately patch a critical flaw (CVE-2024-21181) that could lead to a complete takeover of the server. The flaw is easily exploitable and does not require any authentication https://t.co/J884QI1Dog
  23. 「積極的な #攻撃 による #Oracle #WebLogic Server OSの #コマンドインジェクション#欠陥 」: The Hacker News

    「米国サイバーセキュリティ・インフラストラクチャ・セキュリティ庁( #CISA )は木曜日、 活発な悪用の証拠を引用して、Oracle WebLogic Serverに影響を与えるセキュリティ上の欠陥を既知の悪用された #脆弱性 ( #KEV ) #カタログ#追加 しました。

    #CVE-2017-3506 (CVSS スコア: 7.4)として追跡される この問題は、オペレーティング システム (OS) コマンド インジェクションの脆弱性に関するもので、脆弱なサーバーへの不正アクセスを取得し、完全な制御を取得するために悪用される可能性があります。 」

    thehackernews.com/2024/06/orac

    #prattohome #TheHackerNews

  24. Ok, this end user message from the Canada Revenue government website makes me embarrassed to be a software engineer:
    🤪 🤪 🤪

    #weblogic, now that brings back memories circa 1998

    #sofwarefail

  25. Ok, this end user message from the Canada Revenue government website makes me embarrassed to be a software engineer:
    🤪 🤪 🤪

    #weblogic, now that brings back memories circa 1998

    #sofwarefail

  26. Ok, this end user message from the Canada Revenue government website makes me embarrassed to be a software engineer:
    🤪 🤪 🤪

    #weblogic, now that brings back memories circa 1998

    #sofwarefail

  27. 「8220 ギャングが #Oracle #WebLogic Server の脆弱性を悪用してマルウェアを拡散 」: The Hacker News

    「8220 ギャングには、既知のセキュリティ上の欠陥を利用して クリプトジャッキング マルウェアを配布してきた歴史があります 。 今年 5 月初め、このグループは Oracle WebLogic サーバーの別の欠点 (CVE-2017-3506、CVSS スコア: 7.4) を利用して、デバイスを仮想通貨マイニング ボットネットに結び付けていることが発見されました。」

    thehackernews.com/2023/12/8220

    #prattohome #TheHackerNews