I've searched previous posts and the exploit back in 2019 seems to have reared it's head again.
This morning my instance was exploited and I've had to shut it down permenantly.
I'm running 7.12.4 - all I've done is terminate the processes and deleted the confluence user.