ASP.NET Machine Key Exploit Lets Hackers Compromise IIS, Load Malicious Modules
A large-scale intrusion campaign, tracked as REF3927, is exploiting misconfigured Microsoft IIS servers that reuse publicly exposed ASP.NET machine keys. Attackers are deploying malicious modules and webshells to gain control over affected systems.