We were too slow to patch (and don't have maintenance) and our Confluence on-prem is now locked up. I've stopped the thread that was encrypting, but it looks like backups were deleted and attachments encrypted.
Any experiences so far in the community?
I think multiple instances got affected by this vulnerability, some observations are like, home directory is missing, couple of files are locked, random users were created with Admin privileges.
Hi Santosh,
It would be good if you have the backup, would suggest to to create new instance and restore the backup. May be they downloaded not sure about this. Atlassian is trying to mitigate the problem.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
@Mayur Jadhav Do you think there is a home folder download? or it is just remote code execution to prevent use of confluence server?
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
I have faced the same issue here.. not sure if the whole home folder got downloaded by the hacker...I keep taking weekly backups and found not much data loss for me so far..
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.