News Feed Forums Q&A Technical Q&A Forum Partner FBI Security Notice – Barracuda Devices

  • Partner FBI Security Notice – Barracuda Devices

    Posted by Carla on September 1, 2023 at 9:34 am

    Suspected PRC Cyber Actors Continue to Globally Exploit Barracuda ESG Zero-Day Vulnerability (CVE-2023-2868)

    Summary

    As a part of the FBI investigation into the exploitation of CVE-2023-2868, a zero-day vulnerability in Barracuda Network’s Email Security Gateway (ESG) appliances, the FBI has independently verified that all exploited ESG appliances, even those with patches pushed out by Barracuda, remain at risk for continued computer network compromise from suspected PRC cyber actors exploiting this vulnerability.

    For more details regarding malware found to date related to this exploit and learn more about Barracuda backdoors, please visit CISA Releases Malware Analysis Reports on Barracuda Backdoors. The cyber actors utilized this vulnerability to insert malicious payloads onto the ESG appliance with a variety of capabilities that enabled persistent access, email scanning, credential harvesting, and data exfiltration.

    The FBI strongly advises all affected ESG appliances be isolated and replaced immediately, and all networks scanned for connections to the provided list of indicators of compromise immediately. https://go.fbinet.fbi/news/Pages/Bringing-Private-Sector-to-the-Fight-Against-Cyber-Adversaries.aspx

    Thank you @Joe for sharing this with our community. I’ve attached the flyer with the technical information (and more detailed info) with this post.

    Joe replied 2 years, 6 months ago 2 Members · 1 Reply
  • 1 Reply
  • Joe

    Administrator
    September 14, 2023 at 11:39 pm

    Thanks Carla

Log in to reply.