CYBERSECURITYTRACKER
TRACKING6,528 stories in this site build1,321 vulnerability news stories in this site build
Permanent story citation

ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 5336

As cited

Copy frozen at (site build).

vulnerabilities

ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body

CISA added CVE-2023-49105, a critical ownCloud vulnerability with a CVSS score of 9.8, to its Known Exploited Vulnerabilities catalog after a Chinese-speaking threat actor exploited it to target a nuclear research organization in the Philippines. The flaw enabled theft of nuclear records from the affected institution.

Why it matters: Organizations running ownCloud instances face immediate risk of exploitation by active threat actors; administrators should prioritize patching this vulnerability to prevent data theft and compromise of sensitive assets.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body

CISA added CVE-2023-49105, a critical ownCloud vulnerability with a CVSS score of 9.8, to its Known Exploited Vulnerabilities catalog after a Chinese-speaking threat actor exploited it to target a nuclear research organization in the Philippines. The flaw enabled theft of nuclear records from the affected institution.

Why it matters: Organizations running ownCloud instances face immediate risk of exploitation by active threat actors; administrators should prioritize patching this vulnerability to prevent data theft and compromise of sensitive assets.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary