logo

SugarCRM as initial access to AWS envs (Campaign)

ID: cbd2d7ca-2b11-514d-acf2-11f402f02e62

STIX ID: report--cbd2d7ca-2b11-514d-acf2-11f402f02e62

Feed Name: Wiz Cloud Threat Landscape

Threat Score
80/100

Date Published: 2023-08-10

Date Updated: 2026-05-01

Author: [email protected] (Wiz Threat Research)

...
...

The provided links reference analysis and reporting of an active, high-severity security incident: a critical vulnerability (including discussion of a zero-day and exposed access keys) was exploited in the wild against SugarCRM deployments, resulting in hundreds of infected servers and a cloud incident. The sources include vendor incident analysis, a Black Hat presentation, and press coverage describing large-scale exploitation and infection patterns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.