Rewterz

Rewterz Threat Alert – “Twin Flower” Campaign Downloads Files, Steals Data

April 16, 2020
Rewterz

Rewterz Threat Advisory – CVE-2020-6457 – Google Chrome speech recognizer code execution vulnerability

April 16, 2020

Rewterz Threat Advisory – CVE-2020-0993 – Windows DNS Denial of Service Vulnerability

Severity

Medium

Analysis Summary

A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries. An attacker who successfully exploited this vulnerability could cause the DNS service to become nonresponsive.

To exploit the vulnerability, an authenticated attacker could send malicious DNS queries to a target, resulting in a denial of service.

Impact

Denial of service

Affected Vendors

Microsoft

Remediation

Patched versions are available. Update to latest version

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0993

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.