Netskope Threat Labs

FILE-JAVA Jenkins Remoting library arbitrary file read attempt

IPS-CFWIPS-SWG

1 SID: 64034

Detects requests exploiting CVE-2024-43044, an arbitrary file read through the Jenkins remoting library's class loading. The rule matches the class loader references and secret paths that public exploits use to pull Jenkins administrative credentials.