Rewterz

Rewterz Threat Alert – Kimsuky APT Group – Active IOCs

September 20, 2022
Rewterz

Rewterz Threat Alert – Mirai Botnet – Active IOCs

September 21, 2022

Rewterz Threat Advisory – CVE-2022-37972 – Microsoft Endpoint Configuration Manager Vulnerability

Severity

High

Analysis Summary

CVE-2022-37972

Microsoft Endpoint Configuration Manager could allow a remote attacker to conduct spoofing attacks.

Impact

  • Unauthorized Access

Indicators Of Compromise

CVE

  • CVE-2022-37969

Affected Vendors

  • Microsoft

Affected Products

  • Microsoft Endpoint Configuration Manager

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

Microsoft Security TechCenter

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.