Faculty of Engineering and Architecture - mmf@gelisim.edu.tr
03 February 2023 Friday
A suspected ransomware attack against an anonymous target exploited a Mitel VoIP device as an entry point to perform remote code execution and provide initial access to the environment. The findings come from cybersecurity firm CrowdStrike, which traced the source of the attack to a Linux-based Mitel VoIP device located in the network perimeter, while also identifying a previously unknown exploit, as well as several actor-adopted forensics measures.
To remove traces of their actions, on the device, the exploit is tracked as CVE-2022-29499 and was fixed by Mitel in April 2022. It is rated 9.8 out of 10 for severity in the CVSS vulnerability scoring system, making it a critical shortcoming. "A vulnerability has been identified in the Mitel Service Appliance component of MiVoice Connect (Mitel Service Appliances – SA 100, SA 400 and Virtual SA) that could allow a malicious actor to execute remote code (CVE-2022-29499). In the Service Appliance context," the company stated in an advisory. This exploit required two HTTP GET requests used to retrieve a specific resource from a server, triggering remote code execution by fetching rogue commands from the attacker-controlled infrastructure.
Istanbul Gelisim University Technology Transfer Office signed a strategic protocol with Volo Composite at Saha Expo’24 Fair with the participation of Rector Prof. Bahri Şahin. ...
Istanbul Gelisim University Technology Transfer Office (IGU TTO) participated in the 2024 Saha Expo Defense, Aviation and Space Fair. IGU TTO, which attracted great attention ...
Within the scope of project cooperation between Istanbul Metropolitan Municipality (IBB) and Istanbul Gelisim University (IGU), a consultation meeting was held for international projects for ...
The "University Monitoring and Evaluation General Report-2024" prepared by the Council of Higher Education (YÖK) was published. Istanbul Gelisim University (IGU), which stood out in ...
Asilbek Murtazaev and Shukrob Abdikhafizov from the Presidency of Uzbekistan, Ergash Juamev representing the Ministry of Youth and Sports visited Istanbul Gelisim University. The visit ...
Within the scope of TEKNOFEST 2024, at the ISIF24 International Invention Fair organized under the auspices of the Ministry of Industry and Technology and the ...
Istanbul Gelisim University Technology Transfer Office (IGU TTO) is competing in ISIF 2024 Demo Day with two projects at the “9th International Invention Expo” to ...
Turkpatent ISIF24 International Invention Fair, which was held for the 9th time within the scope of TEKNOFEST 2024 Adana, was opened with the participation of ...
Istanbul Gelisim University Technology Transfer Office (IGU TTO) will compete in ISIF 2024 Demo Day with two projects at the "9th International Invention Fair" to ...