Be the first to know about CVEs and threat advisories that we're seeing on the front lines. We'll break down how these threats or attacks work, do in-depth analysis, and provide mitigation guidance.
Oh No Cleo! Malichus Implant Malware Analysis
Threat Advisory: Oh No Cleo! Cleo Software Actively Being Exploited in the Wild
Cracks in the Foundation: Intrusions of FOUNDATION Accounting Software
SlashAndGrab: The ConnectWise ScreenConnect Vulnerability Explained
Think Your ScreenConnect Server Is Hacked? Here’s What To Look For.
SlashAndGrab: ScreenConnect Post-Exploitation in the Wild (CVE-2024-1709 & CVE-2024-1708)
A Catastrophe For Control: Understanding the ScreenConnect Authentication Bypass (CVE-2024-1709 & CVE-2024-1708)
Detection Guidance for ConnectWise CVE-2024-1709
Vulnerability Reproduced: Immediately Patch ScreenConnect 23.9.8
Rapid Response: TrickBoot
Critical Vulnerability: Exploitation of Apache ActiveMQ CVE-2023-46604
Threat Advisory: VMware Horizon Servers Actively Being Hit With Cobalt Strike
Rapid Response: Mass Exploitation of On-Prem Exchange Servers
Critical Vuln.: PrintNightmare Exposes Windows Servers to RCE