Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

Langsmith Bug can expose the Openai keys and users’ data through malicious agents

June 17, 2025

How to protect backups

June 17, 2025

Silver Fox Apt has on target Taiwan with sophisticated GH0Stcringe and Holdinghands Rats Malicious Programs

June 17, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » New Flodrix Botnet Option Operates Langflow Ai Server RCE BUG to launch DDOS ATTACKS
Global Security

New Flodrix Botnet Option Operates Langflow Ai Server RCE BUG to launch DDOS ATTACKS

AdminBy AdminJune 17, 2025No Comments2 Mins Read
New Flodrix Botnet Variant
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


June 17, 2025Red LakshmananBotnet / vulnerability

New Botnet Flodrix option

Cybersecurity researchers have paid attention to a new company that actively exploits the recently disclosed critical security lack in Langflow to deliver Flodrix Batnet malicious software.

“Attackers use vulnerability to perform boot scenarios on compromised Langflow servers, which in turn – Note In a technical report published today.

Activities entails operating Cve-2025-3248 (CVSS assessment: 9.8), lack of authentication vulnerability Debt.

Cybersecurity

Successful lack of lack can allow an unauthorized attacker to perform an arbitrary code using the developed HTTP requests. It was secured by Langflow in March 2025 with version 1.3.0.

Last month, the US Cybersecurity Agency (CISA) named Active Operation CVE-2025-3248 in the wild, and the Sans Institute of Technology shows that it has revealed attempts to operate against its Honeypot servers.

Latest conclusions Trend Micro Show that threatening subjects are targeted Publicly available Concept check code (POC) for exploration and refusal to download the shell, which is responsible for receiving and performing malicious Flodrix Botnet software with “80.66.75 () 121: 25565.”

After installing FLODRIX set a connection with a remote server to receive commands over TCP to launch common service refusal attacks (DDOS) on target IP addresses of interest. Botnet also supports connections over the Tor anonymity network.

“Since Langflow does not perform an input or sandbox check, these useful loads are composed and performed in the context of the server, leading to (removed removed code),” the researchers said. “Based on these stages, the attacker probably profiles all vulnerable servers and uses the data collected to identify high -value goals for future infections.”

Trend Micro said he identified unknown threats that take different download scenarios on the same hosts used to obtain FLODRIX, believing that the company is actively developing.

Cybersecurity

Flodrix is ​​evaluated as the evolution of another botten called Leetozer This is due to Sheron. The advanced option includes the ability to remove itself, minimize judicial traces and complicate the analysis efforts by firing server and control addresses (C2) and other important indicators.

“Another significant change is the introduction of new types of DDOS attacks, which are now also encrypted, adding another layer of aggravation,” said Trend Micro. “The new sample also noticeably lists running processes by opening /Proc to access all launch processes.”

Found this article interesting? Keep track of us further Youter  and LinkedIn To read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

Langsmith Bug can expose the Openai keys and users’ data through malicious agents

June 17, 2025

How to protect backups

June 17, 2025

Silver Fox Apt has on target Taiwan with sophisticated GH0Stcringe and Holdinghands Rats Malicious Programs

June 17, 2025

Google warns about scattered spider attacks focused on IT -commander by US insurance firms

June 17, 2025

Password “B” in Sitecore XP Sparks Sparks Erriss RCE when deploying businesses

June 17, 2025

Are you forgotten accounts of advertising services that leave you risk?

June 17, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

Langsmith Bug can expose the Openai keys and users’ data through malicious agents

June 17, 2025

How to protect backups

June 17, 2025

Silver Fox Apt has on target Taiwan with sophisticated GH0Stcringe and Holdinghands Rats Malicious Programs

June 17, 2025

Google warns about scattered spider attacks focused on IT -commander by US insurance firms

June 17, 2025

Password “B” in Sitecore XP Sparks Sparks Erriss RCE when deploying businesses

June 17, 2025

Are you forgotten accounts of advertising services that leave you risk?

June 17, 2025

New Flodrix Botnet Option Operates Langflow Ai Server RCE BUG to launch DDOS ATTACKS

June 17, 2025

Lack of the TP-Link Cve-2023-33538 router under active operation, CISA releases an immediate warning

June 17, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Langsmith Bug can expose the Openai keys and users’ data through malicious agents

June 17, 2025

How to protect backups

June 17, 2025

Silver Fox Apt has on target Taiwan with sophisticated GH0Stcringe and Holdinghands Rats Malicious Programs

June 17, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.