Vietnam.vn - Nền tảng quảng bá Việt Nam

Vietnamese businesses need to urgently respond to security vulnerabilities from Adobe

Bkav Security Group has just issued a warning that Adobe's e-commerce platform vulnerability is being exploited by cyber attackers and Vietnamese businesses need to urgently respond to this vulnerability.

Báo Sài Gòn Giải phóngBáo Sài Gòn Giải phóng05/11/2025

Bkav cybersecurity experts assess that Vietnam is among the countries at high risk of being attacked by vulnerabilities from Adobe.
Bkav cybersecurity experts assess that Vietnam is among the countries at high risk of being attacked by vulnerabilities from Adobe.

More than 95,000 Magento (Adobe Commerce) servers worldwide are being attacked by a serious vulnerability called Session Reaper. This vulnerability allows hackers to take advantage of a user's login session to execute code remotely and take control of the entire system. Bkav cybersecurity experts assess that Vietnam is among the countries at high risk of being attacked by this vulnerability.

Mr. Hoang Truong Khuong, a cybersecurity expert at Bkav, said that the SessionReaper vulnerability comes from the way Magento processes data through Web API, allowing attackers to insert malicious content into the session and upload a web shell - a malicious file that helps maintain access and control over the server. If successfully exploited, hackers can take over system administration rights, leak payment data or create fake admin accounts to expand the scope of the attack. Versions of Adobe Commerce and Magento Open Source released before October 2025, including branches from 2.4.9-alpha2 and below, are all affected by this vulnerability.

In just 48 hours after the exploit code was made public, the world recorded more than 300 automated attacks targeting more than 130 Magento servers. According to statistics from Sansec Shield, although Adobe released an emergency patch in early September, about 62% of Magento stores have not been updated. With more than 95,000 Magento servers operating publicly worldwide, this number means that thousands of e-commerce websites are still vulnerable to attacks. A delay of just one day can cause serious damage to businesses.

In Vietnam, many e-commerce platforms, including hundreds of famous brands in the fields of retail, fashion and technology... are using Magento. Bkav recommends that Magento system administrators in Vietnam urgently update the official patch from Adobe, and activate the web application firewall (WAF) to filter and block unusual packets. At the same time, businesses should review the entire system, especially checking for the appearance of strange PHP files in the folder, reviewing newly created administrative accounts. In case of suspected intrusion, it is necessary to isolate the server, restore from a clean backup and change all passwords, access keys...

Source: https://www.sggp.org.vn/doanh-nghiep-viet-nam-can-khan-truong-ung-pho-lo-hong-bao-mat-tu-adobe-post821617.html


Comment (0)

No data
No data

Same tag

Same category

Lost in the fairy moss forest on the way to conquer Phu Sa Phin
This morning, Quy Nhon beach town is 'dreamy' in the mist
Captivating beauty of Sa Pa in 'cloud hunting' season
Each river - a journey

Same author

Heritage

Figure

Enterprise

The 'great flood' on Thu Bon River exceeded the historical flood in 1964 by 0.14 m.

News

Political System

Destination

Product