Tag : 2024-06-06

15 attack reports | 94 vulnerabilities

Attack Reports

Title Published Tags Description Number of indicators
Malware Targets Message Queuing Services Applications June 6, 2024, 6:44 p.m. The report describes a recent campaign targeting Apache RocketMQ platforms, where attackers exploited a known vulnerability (CVE-… 21
Operation ControlPlug: Targeted attack campaign using MSC files June 6, 2024, 2:55 p.m. An investigation revealed that the threat group DarkPeony, also known as Operation ControlPlug, employed a novel technique involv… 14
Malicious Python Script with a "Best Before" Date | Cobalt Strike Beacon June 6, 2024, 12:35 p.m. This post details analysis of a malicious Python script, which yielded a hash for a Cobalt Strike beacon. 1
Fake Advanced IP Scanner Installer Delivers Dangerous Backdoor June 6, 2024, 12:27 p.m. Security researchers discovered a malicious version of the Advanced IP Scanner installer, which contained a backdoored DLL module… 11
TargetCompany’s Linux Variant Targets ESXi Environments June 6, 2024, 11:42 a.m. Since its discovery in 2021, TargetCompany has been evolving its techniques to circumvent security defenses employed by organizat… 3
DarkGate again but... Improved? June 6, 2024, 8:16 a.m. The report details the latest developments surrounding the DarkGate remote access trojan, including its enhanced capabilities in … 313
Wineloader - Analysis of the Infection Chain June 6, 2024, 8:13 a.m. The analysis examines the Wineloader backdoor, a modular malware attributed to the APT29 threat group, which allows further tools… 9
DarkCrystal RAT Cyber Attacks Targeting Government Officials in Ukraine June 6, 2024, 8:02 a.m. This intelligence document outlines targeted cyber attacks against government officials, military personnel, and defense industry… 14
Operation Crimson Palace: A Technical Deep Dive June 6, 2024, 7:55 a.m. Sophos Managed Detection and Response initiated a threat hunt across customers after detecting abuse of a vulnerable VMware execu… 138
RansomHub: New Ransomware with Origins in Older Knight June 6, 2024, 7:46 a.m. A rapidly emerging operation called RansomHub has rapidly grown into one of the largest ransomware threats currently active. Anal… 14
Suspicious DNS Probing Operation Amplified June 6, 2024, 7:41 a.m. This analysis discusses a large-scale domain name system (DNS) probing operation that targets open resolvers globally. An actor o… 17
Malware botnet installing NiceRAT June 6, 2024, 7:28 a.m. This report discusses a botnet that has been active since 2019, distributing various malware such as NiceRAT, Nitol, and NanoCore… 24
DarkGate switches up its tactics with new payload, email templates June 6, 2024, 7:26 a.m. This analysis delves into a recent surge of malicious email campaigns by the DarkGate threat actor, employing novel tactics to di… 12
Threat Actors' Systems Can Also Be Exposed and Used by Other Threat Actors June 6, 2024, 7:22 a.m. This report discusses a case where a CoinMiner threat actor's proxy server, used to access an infected botnet, became the target … 34
Warning Against Phishing Emails Prompting Execution of Commands via Paste June 6, 2024, 7:18 a.m. This report details a phishing campaign distributing malicious HTML files through emails. The files prompt users to paste and run… 15

Vulnerabilities

CVE CVSS Published Product impacted Tags
CVE-2024-5675 10.0 June 6, 2024, 1:15 p.m. LOGO-VULNERABLEMentor - Employee Portal
CVE-2024-36393 9.9 June 6, 2024, 9:15 a.m. LOGO-VULNERABLESysAid
CVE-2024-5452 9.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEpytorch-lightning
CVE-2024-3104 9.6 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEanything-llm
CVE-2024-5153 9.1 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEStartklar Elementor Addons plugin for WordPress
CVE-2024-36394 9.1 June 6, 2024, 9:15 a.m. LOGO-VULNERABLESysAid
CVE-2024-3033 9.1 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEmintplex-labs/anything-llm
CVE-2024-5179 8.8 June 6, 2024, 2:15 a.m. LOGO-VULNERABLECowidgets – Elementor Addons plugin for WordPress
CVE-2024-5324 8.8 June 6, 2024, 2:15 a.m. LOGO-VULNERABLELogin/Signup Popup ( Inline Form + Woocommerce ) plugin for WordPress
CVE-2024-5329 8.8 June 6, 2024, 10:15 a.m. LOGO-VULNERABLEUnlimited Elements For Elementor plugin
CVE-2024-1879 8.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEsignificant-gravitas/autogpt
CVE-2024-3152 8.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEmintplex-labs/anything-llm
CVE-2024-5267 8.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLESonos Era 100 smart speakers
CVE-2024-5269 8.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLESonos Era 100 Smart Speaker
CVE-2024-5505 8.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLENETGEAR ProSAFE Network Management System
CVE-2024-28995 8.6 June 6, 2024, 9:15 a.m. LOGO-VULNERABLESolarWinds Serv-U
CVE-2024-4325 8.6 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEgradio-app/gradio
CVE-2024-36399 8.2 June 6, 2024, 4:15 p.m. LOGO-VULNERABLEKanboard
CVE-2023-6966 8.1 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEMoneytizer plugin for WordPress
CVE-2023-6968 8.1 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEMoneytizer plugin for WordPress
CVE-2024-4177 8.1 June 6, 2024, 8:15 a.m. LOGO-VULNERABLEGravityZone Console
CVE-2024-3504 8.1 June 6, 2024, 6:15 p.m. LOGO-VULNERABLE
CVE-2024-2914 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEdeepjavalibrary/djl
CVE-2024-30369 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEA10 Thunder ADC
CVE-2024-30374 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLELuxion KeyShot Viewer
CVE-2024-30375 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLELuxion KeyShot Viewer
CVE-2024-5301 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEKofax Power PDF
CVE-2024-5302 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEKofax Power PDF
CVE-2024-5303 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEKofax Power PDF
CVE-2024-5506 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLELuxion KeyShot Viewer
CVE-2024-5507 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLELuxion KeyShot Viewer
CVE-2024-5508 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLELuxion KeyShot Viewer
CVE-2024-5509 7.8 June 6, 2024, 6:15 p.m. LOGO-VULNERABLELuxion KeyShot
CVE-2024-37150 7.6 June 6, 2024, 4:15 p.m. LOGO-VULNERABLEDeno
CVE-2024-35178 7.5 June 6, 2024, 4:15 p.m. LOGO-VULNERABLEJupyter Server
CVE-2024-4941 7.5 June 6, 2024, 6:15 p.m. LOGO-VULNERABLE
CVE-2024-3049 7.4 June 6, 2024, 6:15 a.m. LOGO-VULNERABLEBooth
CVE-2024-5482 7.4 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEparisneo/lollms-webui
CVE-2024-30368 7.2 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEA10 Thunder ADC
CVE-2024-4889 7.2 June 6, 2024, 6:15 p.m. LOGO-VULNERABLEberriai/litellm application
CVE-2024-4194 6.5 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEWordPress Album and Image Gallery plus Lightbox plugin
CVE-2024-2350 6.4 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEClever Addons for Elementor plugin for WordPress
CVE-2024-4705 6.4 June 6, 2024, 2:15 a.m. LOGO-VULNERABLETestimonials Widget plugin for WordPress
CVE-2024-5001 6.4 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEImage Hover Effects for Elementor with Lightbox and Flipbox plugin for WordPress
CVE-2024-5224 6.4 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEWordPress Easy Social Like Box - Popup - Sidebar Widget plugin
CVE-2024-5342 6.4 June 6, 2024, 2:15 a.m. LOGO-VULNERABLESimple Image Popup Shortcode plugin for WordPress
CVE-2024-2922 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEThemesflat Addons For Elementor plugin for WordPress
CVE-2024-4212 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEThemesflat Addons For Elementor plugin for WordPress
CVE-2024-4364 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEQi Addons For Elementor plugin
CVE-2024-4458 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEThemesflat Addons For Elementor plugin for WordPress
CVE-2024-4459 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEThemesflat Addons For Elementor plugin for WordPress
CVE-2024-4608 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLESellKit - Funnel builder and checkout optimizer for WooCommerce
CVE-2024-4707 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEMaterialis Companion plugin for WordPress
CVE-2024-5141 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLERotating Tweets (Twitter widget and shortcode) plugin for WordPress
CVE-2024-5152 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEElementsReady Addons for Elementor plugin for WordPress
CVE-2024-5161 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEMagical Addons For Elementor plugin for WordPress
CVE-2024-5162 6.4 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEWordPress prettyPhoto plugin for WordPress
CVE-2024-5221 6.4 June 6, 2024, 9:15 a.m. LOGO-VULNERABLEQi Blocks plugin for WordPress
CVE-2024-5259 6.4 June 6, 2024, 10:15 a.m. LOGO-VULNERABLEMultiVendorX Marketplace - WooCommerce MultiVendor Marketplace Solution plugin for WordPress
CVE-2024-5038 6.4 June 6, 2024, 11:15 a.m. LOGO-VULNERABLEColibri Page Builder plugin for WordPress
CVE-2024-5188 6.4 June 6, 2024, 11:15 a.m. LOGO-VULNERABLEEssential Addons for Elementor
CVE-2024-5277 6.4 June 6, 2024, 6:15 p.m. LOGO-VULNERABLELunary
CVE-2024-5684 6.3 June 6, 2024, 1:15 p.m. LOGO-VULNERABLEUNKNOWN
CVE-2023-6956 6.1 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEWordPress EasyAzon - Amazon Associates Affiliate Plugin
CVE-2024-5673 6.1 June 6, 2024, 11:15 a.m. LOGO-VULNERABLEDulldusk's PHP File Manager
CVE-2024-37156 6.1 June 6, 2024, 4:15 p.m. LOGO-VULNERABLESuluFormBundle
CVE-2024-2017 5.4 June 6, 2024, 3:15 a.m. LOGO-VULNERABLECountdown, Coming Soon, Maintenance - Countdown & Clock plugin for WordPress
CVE-2024-5127 5.4 June 6, 2024, 6:15 p.m. LOGO-VULNERABLElunary-ai/lunary
CVE-2024-0910 5.3 June 6, 2024, 2:15 a.m. LOGO-VULNERABLERestrict for Elementor plugin for WordPress
CVE-2024-0972 5.3 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEBuddyPress Members Only plugin for WordPress
CVE-2024-1175 5.3 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEWP-Recall plugin for WordPress
CVE-2024-5615 5.3 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEOpen Graph plugin for WordPress
CVE-2024-37152 5.3 June 6, 2024, 4:15 p.m. LOGO-VULNERABLEArgo CD
CVE-2024-5658 4.8 June 6, 2024, 11:15 a.m. LOGO-VULNERABLETwo-Factor Authentication plugin for CraftCMS
CVE-2024-4942 4.4 June 6, 2024, 2:15 a.m. LOGO-VULNERABLECustom Dash plugin for WordPress
CVE-2024-5656 4.4 June 6, 2024, 5:15 a.m. LOGO-VULNERABLEGoogle CSE plugin for WordPress
CVE-2024-4788 4.3 June 6, 2024, 2:15 a.m. LOGO-VULNERABLEBoostify Header Footer Builder for Elementor plugin
CVE-2024-5449 4.3 June 6, 2024, 4:15 a.m. LOGO-VULNERABLEWP Dark Mode - WordPress Dark Mode Plugin for Improved Accessibility, Dark Theme, Night Mode, and Social Sharing plugin for WordPress
CVE-2024-5665 4.3 June 6, 2024, 8:15 a.m. LOGO-VULNERABLELogin/Signup Popup ( Inline Form + Woocommerce ) plugin for WordPress
CVE-2024-5489 4.3 June 6, 2024, 12:15 p.m. LOGO-VULNERABLEWbcom Designs - Custom Font Uploader plugin for WordPress
CVE-2024-36106 4.3 June 6, 2024, 3:15 p.m. LOGO-VULNERABLEArgo CD
CVE-2024-5256 4.3 June 6, 2024, 6:15 p.m. LOGO-VULNERABLESonos Era 100 smart speakers
CVE-2024-5268 4.3 June 6, 2024, 6:15 p.m. LOGO-VULNERABLESonos Era 100 smart speakers
CVE-2024-5657 3.7 June 6, 2024, 11:15 a.m. LOGO-VULNERABLECraftCMS plugin Two-Factor Authentication
CVE-2024-0912 None June 6, 2024, 12:15 a.m. LOGO-VULNERABLEMicrosoft Internet Information Server (IIS)
CVE-2024-5089 None June 6, 2024, 9:15 a.m. LOGO-VULNERABLEUNKNOWN
CVE-2024-36779 None June 6, 2024, 1:15 p.m. LOGO-VULNERABLESourcecodester Stock Management System
CVE-2024-34832 None June 6, 2024, 3:15 p.m. LOGO-VULNERABLECubeCart
CVE-2024-33655 None June 6, 2024, 5:15 p.m. LOGO-VULNERABLEDNS Servers implementing RFC 1035
CVE-2024-36742 None June 6, 2024, 5:15 p.m. LOGO-VULNERABLEOneFlow-Inc. Oneflow
CVE-2024-36736 None June 6, 2024, 6:15 p.m. LOGO-VULNERABLEOneFlow-Inc. Oneflow
CVE-2024-36737 None June 6, 2024, 6:15 p.m. LOGO-VULNERABLEOneflow
CVE-2024-36743 None June 6, 2024, 6:15 p.m. LOGO-VULNERABLEOneFlow-Inc. Oneflow
CVE-2024-36745 None June 6, 2024, 6:15 p.m. LOGO-VULNERABLEOneFlow-Inc. Oneflow