Rewterz

Rewterz Threat Alert – FormBook Malware – Active IOCs

January 26, 2022
Rewterz

Rewterz Threat Advisory – CVE-2022-0330 – Linux Kernel Vulnerability

January 27, 2022

Rewterz Threat Advisory – Multiple IBM Security Guardium Insights Vulnerabilities

Severity

Medium

Analysis Summary

CVE-2021-29838 

IBM Security Guardium Insights 3.0 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.

CVE-2021-29845 

IBM Security Guardium Insights 3.0 could allow an authenticated user to perform unauthorized actions due to improper input validation.

CVE-2021-29846 

IBM Security Guardium Insights 3.0 could allow an authenticated user to obtain sensitive information due to insufficient session expiration.

Impact

  • Information Disclosure
  • Security Bypass

Affected Vendors

IBM

Affected Products

  • IBM Security Guardium Insights 3.0

Remediation

Refer to IBM Security Advisory for patch, upgrade, or suggested workaround information.

https://www.ibm.com/support/pages/node/6550866

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.