CVE-2021-31956 and CVE-2021-21224
ID: cfa55abe-8aac-53ce-b76e-6d329c97f936
STIX ID: report--cfa55abe-8aac-53ce-b76e-6d329c97f936
Feed Name: Arctic Wolf Blog
Security researchers observed the Magnitude Exploit Kit expand to include exploits for Chromium-based browsers and a Windows NTFS privilege escalation (CVE-2021-31956), while also reporting a Chromium V8 type-confusion RCE (CVE-2021-21224); Microsoft has noted CVE-2021-31956 was actively exploited in the wild and Kaspersky linked these flaws to an attack chain associated with the PuzzleMaker Group. Arctic Wolf recommends patching affected Google Chrome, Microsoft Edge, and Windows versions to mitigate remote code execution and privilege escalation risks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
