NGINX servers hijacked in a global campaign to redirect traffic


  • DataDog reports attackers hijacking NGINX configurations to redirect traffic through malicious infrastructure
  • The campaign targets Asian government and education sectors, enabling the theft of session tokens, cookies and credentials
  • Hijacked traffic used for phishing, malware injection, ad fraud and additional proxy attacks

Cybercriminals are targeting NGINX servers and redirecting legitimate traffic through their malicious infrastructure, experts have warned.

Security researchers at DataDog Security Labs found that the attackers are primarily focused on Asian targets in the government and education industries.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top