Cyble's Sensor Intelligence Report: Malware, CVEs & Exploits
ID: 66bf98aa-4031-5d2d-a7b9-97d76733a610
STIX ID: report--66bf98aa-4031-5d2d-a7b9-97d76733a610
Feed Name: Cyble Blog
Cyble’s Sensor Intelligence report (Dec 4–10, 2024) details widespread exploitation attempts and malware activity observed by honeypots, highlighting multiple high-severity vulnerabilities (e.g., PHP CGI injection CVE-2024-4577, GeoServer RCE CVE-2024-36401, Ruby-SAML signature bypass CVE-2024-45409, Cisco IOS XE privilege escalation CVE-2023-20198/20273) and a sophisticated new Android banking trojan (AppLite) distributed via phishing; the report documents large volumes of exploit attempts (notably 25,736 attempts against CVE-2020-11899), provides IoCs and case studies, and recommends patching, MFA, IoC monitoring, and other mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
