공인 인증 솔루션(MagicLine4NX) 취약점 주의 및 업데이트 권고

2023-03-21 Ahnlab Public authentication solution (MagicLine4NX) vulnerability warning and update recommendation

https://asec.ahnlab.com/ko/50134/

Thumbnail for 공인 인증 솔루션(MagicLine4NX) 취약점 주의 및 업데이트 권고

AhnLab warns that DreamSecurity MagicLine4NX versions 1.0.0.1 through 1.0.0.26 contain a remotely exploitable code-execution vulnerability in a certificate-authentication component that commonly remains resident via MagicLine4NXServices.exe. AhnLab observed exploitation through its ASD telemetry: attackers injected into svchost.exe and then downloaded and executed malware. The advisory recommends removing vulnerable installations or updating promptly and notes detection as Injection/MDP.Lazarus.M4503, with detailed IOCs reserved for AhnLab TIP subscribers.

Related Reports

« Back