loader image
Server room with racks, blue LEDs, laptop showing holographic teal network, gloved hands inserting USB — SolarWinds WHD Flaws
SolarWinds WHD Flaws Enable Velociraptor Use

Hackers are actively exploiting SolarWinds WHD flaws to execute code on vulnerable systems and install legitimate tools for remote access. Targeting the company’s Web Help Desk application, threat actors gain execution privileges and deploy Velociraptor, a digital forensics tool designed for endpoint visibility. Security researchers linked the activity to persistence strategies, indicating an effort to maintain unauthorized access across affected environments.

Velociraptor, while typically used for investigative purposes, enables attackers to control compromised machines under the guise of a trusted platform. The tool’s legitimate nature allows it to blend in with existing security frameworks, making detection more difficult for defenders. Evidence suggests that attackers are choosing exposed systems running unpatched versions of the software for exploitation.

Organizations using Web Help Desk are urged to apply available security updates and limit unnecessary exposure. As the abuse of SolarWinds WHD flaws continues, companies face renewed pressure to secure remote access points.

https://www.bleepingcomputer.com/news/security/threat-actors-exploit-solarwinds-whd-flaws-to-deploy-velociraptor/

Write a Reply or Comment

Your email address will not be published. Required fields are marked *