SecuritySophisticated Web Shell Campaign Targets Enterprise Engineering Data Across Vulnerable Servers
A newly identified JSP web shell linked to the Clop ransomware group is actively harvesting credentials from PTC Windchill and FlexPLM platforms to exfiltrate proprietary engineering data.
Eva Swa • 19h ago