Threat actors are actively exploiting a vulnerability in an older version of Elasticsearch software to carry out a distributed denial of service ( DDoS ) malware attack on Amazon Elastic Compute Cloud (EC2) services.
Elasticsearch is an open-source search server that can be used to search various types of documents. Its advantages include scalability, near real-time search, and support for multi-latency.
The security vulnerability, CVE-2014-3120, exists in the software's scripting capability, which can be used to execute arbitrary code remotely on the server where it is installed. A solution for administrators who cannot run an updated version would be to disable this feature, if possible.
📧
Subscribe to the SecNews Newsletter
