{"id":1258665,"date":"2024-07-29T17:50:02","date_gmt":"2024-07-29T19:50:02","guid":{"rendered":"https:\/\/teknomers.com\/fr\/une-faille-critique-dans-linfrastructure-cybernetique-dacronis-a-ete-exploitee-dans-la-nature\/"},"modified":"2024-07-29T17:50:08","modified_gmt":"2024-07-29T19:50:08","slug":"une-faille-critique-dans-linfrastructure-cybernetique-dacronis-a-ete-exploitee-dans-la-nature","status":"publish","type":"post","link":"https:\/\/teknomers.com\/fr\/une-faille-critique-dans-linfrastructure-cybernetique-dacronis-a-ete-exploitee-dans-la-nature\/","title":{"rendered":"Une faille critique dans l&#8217;infrastructure cybern\u00e9tique d&#8217;Acronis a \u00e9t\u00e9 exploit\u00e9e dans la nature"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p><span class=\"p-author\"><i class=\"icon-font icon-calendar\">\ue802<\/i><span class=\"author\">29 juillet 2024<\/span><i class=\"icon-font icon-user\">\ue804<\/i><span class=\"author\">Ravie Lakshmanan<\/span><\/span><span class=\"p-tags\">S\u00e9curit\u00e9 de l&#8217;entreprise \/ Protection des donn\u00e9es<\/span><\/p>\n<\/div>\n<div id=\"articlebody\">\n<div class=\"separator\" style=\"clear: both;\"><a rel=\"nofollow\" href=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2024\/07\/Une-faille-critique-dans-linfrastructure-cybernetique-dAcronis-a-ete-exploitee.png\" style=\"clear: left; display: block; float: left; text-align: center;\"><\/a><\/div>\n<p>La soci\u00e9t\u00e9 de cybers\u00e9curit\u00e9 Acronis pr\u00e9vient qu&#8217;une faille de s\u00e9curit\u00e9 critique d\u00e9sormais corrig\u00e9e affectant son produit Cyber \u200b\u200bInfrastructure (ACI) a \u00e9t\u00e9 exploit\u00e9e dans la nature.<\/p>\n<p>La vuln\u00e9rabilit\u00e9, suivie comme <strong><a rel=\"nofollow noopener\" href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2023-45249\" target=\"_blank\">CVE-2023-45249<\/a><\/strong>  (Score CVSS : 9,8), concerne un cas d&#8217;ex\u00e9cution de code \u00e0 distance r\u00e9sultant de l&#8217;utilisation de mots de passe par d\u00e9faut.<\/p>\n<p>Le d\u00e9faut <a rel=\"nofollow noopener\" href=\"https:\/\/security-advisory.acronis.com\/advisories\/SEC-6452\" target=\"_blank\">impacts<\/a> les versions suivantes d&#8217;Acronis Cyber \u200b\u200bInfrastructure (ACI) &#8211;<\/p>\n<p>Ce probl\u00e8me a \u00e9t\u00e9 r\u00e9solu dans les versions 5.4 mise \u00e0 jour 4.2, 5.2 mise \u00e0 jour 1.3, 5.3 mise \u00e0 jour 1.3, 5.0 mise \u00e0 jour 1.4 et 5.1 mise \u00e0 jour 1.2 publi\u00e9es fin octobre 2023.<\/p>\n<section class=\"dog_two clear\"><center class=\"cf\"><a rel=\"nofollow noopener\" href=\"https:\/\/thehackernews.uk\/intel-inside-d\" target=\"_blank\" title=\"Cybersecurity\"><img loading=\"lazy\" decoding=\"async\" class=\"lazyload\" alt=\"La cyber-s\u00e9curit\u00e9\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2024\/07\/1721628359_866_Nouvelle-variante-Linux-du-ransomware-Play-ciblant-les-systemes-VMWare.png\" width=\"727\" height=\"90\"\/><\/a><\/center><\/section>\n<p>Il n\u2019existe actuellement aucun d\u00e9tail sur la mani\u00e8re dont cette vuln\u00e9rabilit\u00e9 est exploit\u00e9e dans des cyberattaques r\u00e9elles ni sur l\u2019identit\u00e9 des acteurs de la menace qui pourraient l\u2019exploiter.<\/p>\n<p>Cependant, la soci\u00e9t\u00e9 bas\u00e9e en Suisse a reconnu avoir re\u00e7u des informations faisant \u00e9tat d&#8217;une exploitation active dans un avis mis \u00e0 jour la semaine derni\u00e8re. \u00ab Cette vuln\u00e9rabilit\u00e9 est connue pour \u00eatre exploit\u00e9e dans la nature \u00bb, a-t-il d\u00e9clar\u00e9. <a rel=\"nofollow noopener\" href=\"https:\/\/security-advisory.acronis.com\/updates\/UPD-2310-9e7e-bd9b\" target=\"_blank\">dit<\/a>.<\/p>\n<p>Il est recommand\u00e9 aux utilisateurs des versions concern\u00e9es d&#8217;ACI de mettre \u00e0 jour vers la derni\u00e8re version pour att\u00e9nuer les menaces potentielles.<\/p>\n<p><\/p>\n<div class=\"cf note-b\">Vous avez trouv\u00e9 cet article int\u00e9ressant ? Suivez-nous sur <a rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/thehackersnews\" target=\"_blank\">Twitter <i class=\"icon-font icon-twitter\">\uf099<\/i><\/a>  et <a rel=\"nofollow noopener\" href=\"https:\/\/www.linkedin.com\/company\/thehackernews\/\" target=\"_blank\">LinkedIn<\/a> pour lire davantage de contenu exclusif que nous publions.<\/div>\n<\/div>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/><br \/>\n<br \/><a href=\"https:\/\/thehackernews.com\/2024\/07\/critical-flaw-in-acronis-cyber.html\" rel=\"nofollow noopener\" target=\"_blank\">ttn-fr-57<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\ue80229 juillet 2024\ue804Ravie LakshmananS\u00e9curit\u00e9 de l&#8217;entreprise \/ Protection des donn\u00e9es La soci\u00e9t\u00e9 de cybers\u00e9curit\u00e9 Acronis pr\u00e9vient qu&#8217;une faille de s\u00e9curit\u00e9 critique d\u00e9sormais corrig\u00e9e affectant son produit Cyber \u200b\u200bInfrastructure (ACI) a \u00e9t\u00e9 exploit\u00e9e dans la nature. La vuln\u00e9rabilit\u00e9, suivie comme CVE-2023-45249 (Score CVSS : 9,8), concerne un cas d&#8217;ex\u00e9cution de code \u00e0 distance r\u00e9sultant de l&#8217;utilisation [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1258666,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[238714,200292,238582,238778,4168,22,4158,4165,37801,244356,429,162,36372,9048,238584,49521,200271,238334,98340,5853,238617,4172,4169,196,4166,238583],"class_list":["post-1258665","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technologie","tag-actualites-des-hackers","tag-actualites-sur-la-cybersecurite","tag-actualites-sur-la-cybersecurite-aujourdhui","tag-actualites-sur-le-piratage-informatique","tag-comment-pirater","tag-critique","tag-cyber-actualites","tag-cyber-attaques","tag-cybernetique","tag-dacronis","tag-dans","tag-ete","tag-exploitee","tag-faille","tag-les-nouvelles-des-hackers","tag-linfrastructure","tag-logiciel-malveillant-rancongiciel","tag-mises-a-jour-cybernetiques","tag-mises-a-jour-de-cybersecurite","tag-nature","tag-securite-de-linformation","tag-securite-informatique","tag-securite-internet","tag-une","tag-violation-de-donnees","tag-vulnerabilite-du-logiciel"],"_links":{"self":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/1258665","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/comments?post=1258665"}],"version-history":[{"count":0,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/1258665\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media\/1258666"}],"wp:attachment":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media?parent=1258665"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/categories?post=1258665"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/tags?post=1258665"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}