#6
The Hacker News
general
August 28, 2026 at 15:56 UTC
ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body
By [email protected] (The Hacker News)
AI Summary
CISA added CVE-2023-49105 (CVSS 9.8), a critical ownCloud vulnerability, to its Known Exploited Vulnerabilities catalog after a Chinese-speaking threat actor exploited it to target a nuclear research organization in the Philippines and exfiltrate nuclear records. The flaw affects ownCloud file-sharing deployments and has a public CVE with a near-maximum severity score, making unpatched internet-facing instances high-priority targets. Security teams running ownCloud should verify patch status immediately given active nation-state exploitation.
Relevance score: 83.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →