Skip to content
The Nexus
SECURITYAug 19 · 05:39 UTCTHE HACKER NEWS[email protected] (The Hacker News)

Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data

New findings revealed a JavaServer Pages (JSP) web shell targeting enterprise Product Lifecycle Management (PLM) software, specifically connected to PTC Windchill and FlexPLM servers. This web shell was deployed after exploiting a critical security flaw and is characterized as an extortion platform capable of mapping sensitive data.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this