SugarCRM as initial access to AWS envs (Campaign)
ID: cbd2d7ca-2b11-514d-acf2-11f402f02e62
STIX ID: report--cbd2d7ca-2b11-514d-acf2-11f402f02e62
Feed Name: Wiz Cloud Threat Landscape
Date Published: 2023-08-10
Date Updated: 2026-05-01
Author: [email protected] (Wiz Threat Research)
The provided links reference analysis and reporting of an active, high-severity security incident: a critical vulnerability (including discussion of a zero-day and exposed access keys) was exploited in the wild against SugarCRM deployments, resulting in hundreds of infected servers and a cloud incident. The sources include vendor incident analysis, a Black Hat presentation, and press coverage describing large-scale exploitation and infection patterns.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
