Q1 2026 Malware Statistics Report for Windows Database Servers
ID: bf9e56f9-980a-5539-8f3e-a73a49044d33
STIX ID: report--bf9e56f9-980a-5539-8f3e-a73a49044d33
Feed Name: ASEC
Threat Score
Q1 2026 ASD logs indicate sustained attacks against MS-SQL and MySQL servers where attackers (attributed to Larva-26002) used brute-force/dictionary attacks and BCP-based exploitation of mismanaged/unpatched accounts to install an ICE Cloud scanner (written in Go). The report includes MD5 hashes and a delivery URL as IoCs and recommends stronger password practices, timely patching, and network access controls to reduce exposure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
