Exploits and vulnerabilities in Q4 2024
ID: 404f0e6d-2ec3-5fd1-a59f-961d5a4331e5
STIX ID: report--404f0e6d-2ec3-5fd1-a59f-961d5a4331e5
Feed Name: Securelist by Kaspersky
Threat Score
**Q4 2024 exploit summary:** The report outlines growing numbers of registered CVEs but fewer published PoCs, dominant CWE classes (command injection, input validation, memory corruption), and telemetry-driven evidence of active exploitation on Windows and Linux—highlighting high-impact CVEs (RCEs, NetNTLM disclosure, and undocumented-RPC-based privilege escalation) used in APT activity and urging timely patching and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
