NGINX servers hijacked in global campaign to redirect traffic



  • DataDog reports attackers hijacking NGINX configurations to redirect traffic through malicious infrastructure
  • The campaign targets the government and education sectors in Asia and allows the theft of session tokens, cookies and credentials.
  • Hijacked traffic used for phishing, malware injection, ad fraud, and additional proxy attacks.

Experts have warned that cybercriminals are targeting NGINX servers and diverting legitimate traffic through their malicious infrastructure.

Security researchers at DataDog Security Labs found that attackers primarily focus on Asian targets in the government and education industries.



Leave a Comment

Your email address will not be published. Required fields are marked *