Severity Medium Analysis Summary A new email campaign has been discovered that drops malicious files via spam emails. During analysis of these malicious files, a variant […]
Severity Medium Analysis Summary During execution, the following commands are executed. cmd.exe /C net user /domain > “%ALLUSERSPROFILE%\TMPUSER.DAT” The malware will jump directly to the deletion […]
Severity High Analysis Summary Windows servers running Internet Information Services (IIS) are vulnerable to denial-of-service (DoS) attacks carried out through malicious HTTP/2 requests. Attackers can trigger […]
Severity Medium Analysis Summary The fix for CVE-2019-7089 first introduced in 2019.010.20091, 2017.011.30120 and 2015.006.30475 has been bypassed, leading to CVE-2019-7815. Successful exploitation could lead to […]
Severity Medium Analysis Summary A vulnerability in multiple F5 BIG-IP products can be exploited by malicious people to compromise a vulnerable system. The libcurl API function […]
Severity Medium Analysis Summary The Oceansalt APT Group seems to have links with the Chinese hacking group Comment Crew (aka APT1). The target sectors of this […]
Severity: High Analysis Summary Multiple Phishing campaigns have been observed targeting multiple organizations, to deliver AZORult Malware, Trickbot banking Trojan and Emotet Malware. While Trickbot and Emotet […]
Severity Medium Analysis Summary Another MalSpam campaign has been observed containing malicious file attachments, which also have malicious URLs embedded in them. Following IoCs have been […]
Severity Medium Analysis Summary CVE-2019-0251 The Fiori Launchpad of SAP BusinessObjects, before versions 4.2 and 4.3, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting […]