OfficeKeeper 제품 보안 조치 권고

2024-04-19 KRCERT OfficeKeeper Security Mitigation Advisory

https://krcert.or.kr/kr/bbs/view.do?searchCnd=1&bbsId=B0000133&searchWrd=&menuNo=205020&pageIndex=33&categoryCode=&nttId=71417

Thumbnail for OfficeKeeper 제품 보안 조치 권고

KrCERT published emergency threat mitigation guidance for OfficeKeeper servers after suspicious uploaded PHP files and abnormal storage behavior were identified. Administrators are advised to inspect /home/storage/ and OfficeKeeper storage paths for web shells such as ofk_storage1.php through ofk_storage9.php or grabberr.php, review access logs for abnormal IP activity, disable automatic backup exposure, restrict unauthorized access, and coordinate vendor patching.

« Back