Microsoft warns of hackers have a new and tortuous way to distribute malware


  • ViewState code injection attacks can lead to remote code execution, Microsoft warned
  • Many developers are not generating their own views for viewstate
  • There are thousands of publicly available keys that cybercriminals can use

Cybercriminals are abusing a weakness on ASP.NET websites to remotely execute malicious code, according to Microsoft’s intelligence team, which has published an in -depth analysis of the new method.

In the article, Microsoft explained that threat actors injected malicious code through a method called ViewState code injection attacks.

Leave a Comment

Your email address will not be published. Required fields are marked *