Category: Reports

Threat Intel Roundup: Phar, SEO Poisoning, ScreenConnect, Lockbit

Threat Intel Roundup: Phar, SEO Poisoning, ScreenConnect, Lockbit

Week in Overview(20 Feb-27 Feb) – 2024 Technical Summary 1.ScreenConnect Vulnerabilities (CVE-2024-1709, CVE-2024-1708) for Malware Delivery: ConnectWise ScreenConnect, a remote desktop solution, was affected by two critical vulnerabilities (CVE-2024-1709, CVE-2024-1708) in its server component. CVE-2024-1709 enabled authentication bypass, allowing attackers to create admin accounts, while CVE-2024-1708 facilitated remote code execution through path traversal. Exploitation of

More
Threat Intel Roundup: Outlook, SmartScreen, Lockbit

Threat Intel Roundup: Outlook, SmartScreen, Lockbit

Week in Overview(13 Feb-20 Feb) – 2024 Technical Summary 4. Security Advisory Summary Report for CVE-2024-21412: 5. CVE-2024-21413 | Microsoft Outlook Remote Code Execution Vulnerability PoC: Week in Overview(13 Feb-20 eb) – 20 🚨 Vulnerability of the Week The vulnerability, termed the #MonikerLink bug, is assigned CVE-2024-21413 with a CVSS score of 9.8. It allows

More

Threat Intel Roundup: Gitlab, Juniper, MageCart, SystemBC

Week in Overview(5 Dec-12 Dec) – 2024 Technical Summary 🚨 Vulnerability of the Week Juniper Networks has addressed a critical pre-authentication remote code execution (RCE) vulnerability, identified as CVE-2024-21591, in Junos OS on SRX firewalls and EX switches. This vulnerability could allow an unauthenticated, network-based threat actor to execute a range of attacks, including denial-of-service

More
Threat Intel Roundup: Lazarus, Lumma, Superset, RocketMQ

Threat Intel Roundup: Lazarus, Lumma, Superset, RocketMQ

Week in Overview(5 Sep-12 Sep) Technical Summary Key Findings it is crucial for organizations and individuals to prioritize remediation and patching efforts to safeguard their systems and data. The following key findings highlight the importance of proactive measures to mitigate risks associated with various vulnerabilities and threats: 🚨 Vulnerability of the Week Apache Superset CVE-2023-39476

More