Close Menu
  • Academy
  • Events
  • Identity
  • International
  • Inventions
  • Startups
    • Sustainability
  • Tech
  • Spanish
What's Hot

Apple Zero-Clock flaws in messages abused by journalist spies using Paragon Spyware

Israeli attacks on Iran could send oil prices above $100 as tensions rise

Top Startups and High-Tech Funding News – June 12, 2025

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Academy
  • Events
  • Identity
  • International
  • Inventions
  • Startups
    • Sustainability
  • Tech
  • Spanish
Fyself News
Home » 295 Malicious IPS launches a coordinated brute force attack against ApacheTomcat manager
Identity

295 Malicious IPS launches a coordinated brute force attack against ApacheTomcat manager

userBy userJune 11, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

June 11, 2025Ravi LakshmananNetwork Security/Threat Intelligence

Apache Tomcat Manager

Threat intelligence company Greynoise warns about “tweaked brute force activity” that targets the interface of the Apache Tomcat manager.

The company said brute force and login attempts surged on June 5, 2025, indicating that this could lead to a cautious effort to “identify and access large-scale exposed Tomcat services.”

To this end, 295 unique IP addresses are known to be engaged in brute force attempts on the Tomcat manager that day, all of which are classified as malicious. Over the past 24 hours, 188 unique IPs have been recorded, most of which have been in the US, UK, Germany, the Netherlands and Singapore.

Cybersecurity

Similarly, it was observed that 298 unique IPs perform login attempts to the Tomcat Manager instance. Of the 246 IP addresses flagged in the last 24 hours, they are all categorized as malicious and originated from the same location.

Targets for these attempts include the US, UK, Spain, Germany, India and Brazil over the same period. Greynoise pointed out that a significant portion of the activity came from the infrastructure hosted by DigitalOcean (ASN 14061).

“While not linked to any particular vulnerabilities, this action highlights the continued interest in exposed Tomcat services,” the company added. “This wide range of opportunistic activities often serve as early warnings of future exploitation.”

Organizations with exposed Tomcat manager interfaces are recommended to implement strong authentication and access restrictions to mitigate potential risks and monitor for indications of suspicious activity.

This disclosure comes as BitSight reveals that over 40,000 security cameras have open access over the Internet, and could potentially access live video feeds captured by these devices via HTTP or Real-Time Streaming Protocol (RTSP). This exposure is concentrated in the US, Japan, Austria, the Czech Republic and South Korea.

The telecommunications sector accounts for 79% of exposed cameras, followed by technology (6%), media (4.1%), utilities (2.5%), education (2.2%), business services (2.2%) and government (1.2%).

Equipment can inadvertently leak sensitive information from those installed in residential, office, public transport and factory settings, and can then be misused for spying, stalking or extortion.

Cybersecurity

Users are advised to change their default username and password and disable remote access if not required (or restrict access using a firewall and VPN) to keep the firmware up to date.

“For security or convenience purposes, these cameras are often windows open to sensitive spaces that are often unfamiliar with the owner,” security researcher Joan Cruz said in a report shared with hacker news.

“The fact that anyone can buy, plug in, and start streaming with minimal setup, regardless of why a single individual or organization needs this kind of device, is likely a threat that is still ongoing.”

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleZuckerberg bets $1.4 billion on scale AI to hire founder king to save Meta’s struggling AI ambitions
Next Article Browser company will release DIA, the AI-first browser, in beta version
user
  • Website

Related Posts

Apple Zero-Clock flaws in messages abused by journalist spies using Paragon Spyware

June 13, 2025

How Vextrio and Affiliates run a global fraud network

June 12, 2025

New token break attacks bypass AI moderation with text changes for single characters

June 12, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Apple Zero-Clock flaws in messages abused by journalist spies using Paragon Spyware

Israeli attacks on Iran could send oil prices above $100 as tensions rise

Top Startups and High-Tech Funding News – June 12, 2025

Meta AI apps are privacy disasters

Trending Posts

Sana Yousaf, who was the Pakistani Tiktok star shot by gunmen? |Crime News

June 4, 2025

Trump says it’s difficult to make a deal with China’s xi’ amid trade disputes | Donald Trump News

June 4, 2025

Iraq’s Jewish Community Saves Forgotten Shrine Religious News

June 4, 2025

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Top Startups and High-Tech Funding News – June 12, 2025

AI Internet is down: Google Cloud outage breaks Firebase, Supabase, Cursor, Lovable, etc.

Digital banking startup Chime pops with IPO debut, raising $700 million at a valuation of $11.6 billion

Spanish AI Startup Multiverse raises $227 million to reduce LLMS and reduce inference costs by 80%

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.