September 2024: Latest Malware, Vulnerabilities and Exploits
ID: 27655f1c-2851-57b2-93c8-b104a8f7659b
STIX ID: report--27655f1c-2851-57b2-93c8-b104a8f7659b
Feed Name: Resources-2
Picus Security's August 2024 CTI roundup details multiple high-risk adversary activities and exploited vulnerabilities: critical Apache OFBiz and Jenkins RCEs (CVE-2024-38856, CVE-2024-23897), a Versa Director zero-day exploited by Volt Typhoon (CVE-2024-39717), and a Windows SmartScreen bypass (CVE-2024-38213) used in live attacks; it also covers active APT campaigns (Peach Sandstorm, UAT-5394, Pioneer/Fox Kitten), ransomware incidents (RansomHub/Halliburton), new malware families (Tickler, MoonPeak, VersaMem), sample IOCs and mitigation advice urging immediate patching and hardening.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
