Nimbuspwn: Leveraging vulnerabilities to exploit Linux via Privilege Escalation
ID: eb4afe9a-5673-5728-9477-9c1222adac7d
STIX ID: report--eb4afe9a-5673-5728-9477-9c1222adac7d
Feed Name: Elastic Security Labs
Threat Score
Elastic Security summarizes Microsoft’s disclosure of “Nimbuspwn,” a set of local privilege-escalation vulnerabilities in networkd-dispatcher that enable adversaries with shell access to escalate privileges on affected Linux hosts; the report describes impacted versions, detection queries (OSQuery and Elastic EQL) to identify vulnerable or suspicious activity, and recommends applying the upstream patch and investigating hosts running networkd-dispatcher.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
