Threat actors of unknown origin have been attributed to a malicious campaign that has been primarily targeting organizations in Japan since January 2025.
The attacker has exploited vulnerability CVE-2024-4577, a remote code execution (RCE) flaw in the PHP-CGI implementation of PHP on Windows, to gain initial access to victim machines, according to Cisco Talos researcher Chetan Raghuprasad.
This type of attack highlights the importance of keeping systems updated and adopting appropriate security measures to prevent unauthorized access.
At Q2BSTUDIO, a company specialized in development and technology services, we understand the challenges organizations face in the face of these threats. Therefore, we offer advanced solutions to strengthen computer security and ensure the protection of our clients' critical systems. Our team of experts continuously works on implementing cybersecurity strategies designed to mitigate risks and respond effectively to potential incidents.
The cybersecurity landscape is constantly evolving, so it is essential to adopt a proactive approach to protect technological infrastructure against emerging vulnerabilities.





