{ads}

KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike



May 26, 2026 at 10:49AM

A now-patched high-severity security flaw affecting Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) popular in Japan, was exploited as a zero-day to deliver the Godzilla web shell and ultimately facilitate the deployment of Cobalt Strike Beacon. The vulnerability, tracked as CVE-2026-5426 (CVSS score: 7.5), stems from the use of hard-coded ASP.NET machine keys, leading to

from The Hacker News https://ift.tt/uofAhbV

0 Response to "KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike"

Post a Comment

Article Top Ads

Central Ads Article 1

Middle Ads Article 2

Article Bottom Ads