Create
cancel
Showing results for 
Search instead for 
Did you mean: 
Sign up Log in

Next challenges

Recent achievements

  • Global
  • Personal

Recognition

  • Give kudos
  • Received
  • Given

Leaderboard

  • Global

Trophy case

Kudos (beta program)

Kudos logo

You've been invited into the Kudos (beta program) private group. Chat with others in the program, or give feedback to Atlassian.

View group

It's not the same without you

Join the community to find out what other Atlassian users are discussing, debating and creating.

Atlassian Community Hero Image Collage
Highlighted

Malware issues continue after confluence security vulnerability addressed...

My environment was impacted by the security vulnerability introduced by Atlantis Confluence Security Advisory - 2019-03-20 https://confluence.atlassian.com/doc/confluence-security-advisory-2019-03-20-966660264.html?_ga=2.42850912.435297976.1555337817-950560266.1551278855&_gac=1.36301716.1552504971.EAIaIQobChMI-d6O2Ov_4AIVkoRpCh32zAEMEAAYASAAEgKqk_D_BwE

We followed the Atlassian provided troubleshooting steps to a T. Is anyone else continuing to experience fall out AFTER upgrading confluence? It seems the upgrade wasn't enough and we are continuing to experience malware issues in our environment.  

Are we alone? Please let me know.

1 comment

Hi Becky,

If your system was already infected prior to the upgrade, then just running the upgrade won't be enough unfortunately. There's been numerous examples where a system was compromised using the vulnerability, once the system was compromised, the bad actors then got their own software on those servers, so even with Confluence fixed, the other software was still running.

It's best practice (and in this case, pretty much a have to do) that if a system has been compromised that you setup a brand new installation on a clean server, carefully restore your data (database and home directory) - watch carefully that you're not pulling over infected files too, run your companies virus/etc over the data you restore and then closely monitor the new environment as well.

 

CCM

Comment

Log in or Sign up to comment
TAGS
Community showcase
Posted in Confluence

What do you think is the most *delightful* Confluence feature? Comment for a prize!

- Create your own custom emoji 🔥 - "Shake for Feedback" on mobile 📱 - An endless supply of GIFs via GIPHY 🤩 Is there anything quite as nice as a pleasant surprise? Comment below with what...

494 views 24 9
Join discussion

Community Events

Connect with like-minded Atlassian users at free events near you!

Find an event

Connect with like-minded Atlassian users at free events near you!

Unfortunately there are no Community Events near you at the moment.

Host an event

You're one step closer to meeting fellow Atlassian users at your local event. Learn more about Community Events

Events near you