logo

Exploits and vulnerabilities in Q4 2024

ID: 404f0e6d-2ec3-5fd1-a59f-961d5a4331e5

STIX ID: report--404f0e6d-2ec3-5fd1-a59f-961d5a4331e5

Feed Name: Securelist by Kaspersky

Threat Score
75/100

Date Published: 2025-02-26

Date Updated: 2026-04-29

Author: Alexander Kolesnikov

...
...

**Q4 2024 exploit summary:** The report outlines growing numbers of registered CVEs but fewer published PoCs, dominant CWE classes (command injection, input validation, memory corruption), and telemetry-driven evidence of active exploitation on Windows and Linux—highlighting high-impact CVEs (RCEs, NetNTLM disclosure, and undocumented-RPC-based privilege escalation) used in APT activity and urging timely patching and mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.