Spyware and zero-day exploits increasingly go hand-in-hand, researchers find
ID: 77ecaae8-098d-59de-aaaa-833600e71a7d
STIX ID: report--77ecaae8-098d-59de-aaaa-833600e71a7d
Feed Name: CyberScoop
The Google Threat Analysis Group and Mandiant report finds 97 zero-day vulnerabilities exploited in the wild in 2023, with commercial surveillance vendors driving a majority of mobile and browser zero-day exploitation (64% of mobile/browser cases). The analysis notes that CSVs provide sophisticated pay-to-play exploit chains and infrastructure, that most spyware zero-day activity targeted Google/Android and Apple/iOS products, and that state and state-linked actors (notably China and a reported Belarus-linked group) continue to use zero-days, prompting policy responses on spyware use.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
