Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries
Summary
A Chinese threat actor tracked as Red Heron has been attributed to the rapid exploitation of a recently disclosed security vulnerability in Gitea to compromise internet-facing instances as part of a multi-national campaign. "Red Heron scanned 1,386 Gitea instances across seven countries and maintained a separate dataset of 477 Taiwan-based systems," Acronis Threat Research Unit (TRU) said in an
Lotu Radar provides attributed news summaries and links to the original publisher. Full reporting and copyright remain with the source.