Rewterz

Rewterz Threat Alert – Dridex Banking Trojan – Active IOCs

July 15, 2021
Rewterz

Rewterz Threat Alert – Quasar RAT – Active IOCs

July 15, 2021

Rewterz Threat Advisory – Multiple Microsoft Windows Vulnerabilities

Severity

High

Analysis Summary

CVE-2021-33771

Microsoft Windows could allow a local authenticated attacker to gain elevated privileges on the system, caused by a flaw in the Kernel. By executing a specially-crafted program, an authenticated attacker could exploit this vulnerability to execute arbitrary code with higher privileges.

CVE-2021-34449

Microsoft Windows could allow a local authenticated attacker to gain elevated privileges on the system, caused by a flaw in the Win32k component. By executing a specially-crafted program, an authenticated attacker could exploit this vulnerability to execute arbitrary code with higher privileges.

CVE-2021-34467

Microsoft SharePoint Server could allow a remote authenticated attacker to execute arbitrary code on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system with privileges of the victim.

CVE-2021-31979

Microsoft Windows could allow a local authenticated attacker to gain elevated privileges on the system, caused by a flaw in the Kernel. By executing a specially-crafted program, an authenticated attacker could exploit this vulnerability to execute arbitrary code with higher privileges.

CVE-2021-34476

Microsoft Windows is vulnerable to a denial of service, caused by a flaw in the Common Internet File System (CIFS) Browser Protocol. By sending a specially-crafted request, a remote attacker could exploit this vulnerability to cause a denial of service condition.

Impact

  • Code Execution
  • Denial of Service
  • Privilege Escalation

Affected Vendors

Microsoft

Affected Products

  • Microsoft Windows 10 Version 1809 for 32-bit Systems
  • Microsoft Windows 10 Version 1809 for x64-based Systems
  • Windows Server 2019 (Server Core installation)
  • Microsoft Windows 10 Version 1809 for ARM64-based Systems

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

https://msrc.microsoft.com/update-guide

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.


The Future of Autonomous Security Takes the Stage

11 August 2026 | 9:00 AM onwards
Pearl Continental Hotel, Karachi