Lucene search

K
hiveproZaira PirzadaHIVEPRO:42B47A839DF46D88E83C273EEC3ACE03
HistoryJul 10, 2024 - 5:49 p.m.

Attacks, Vulnerabilities and Actors 01 to 07 July 2024

2024-07-1017:49:37
Zaira Pirzada
hivepro.com
11
hiveforce labs
cybersecurity threats
oracle weblogic
microsoft mshtml
openssh
f5 big-ip

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L

AI Score

7.4

Confidence

High

EPSS

0.971

Percentile

99.8%

For a detailed threat digest, download the pdf file here

Summary

HiveForce Labs has recently made substantial advancements in identifying cybersecurity
threats. In just the past week, HiveForce Labs detected eleven executed attacks,
reported five vulnerabilities, and identified three active adversaries. These findings
underscore the persistent and escalating danger of cyber intrusions.

Moreover, the 8220 Gang, also known as Water Sigbin, has been aggressively targeting
Oracle WebLogic servers to install cryptocurrency miners. In another development,
unidentified threat actors are exploiting the previously patched CVE-2021-40444
security vulnerability in Microsoft MSHTML to disseminate MerkSpy.

Additionally, the "regreSSHion" vulnerability, CVE-2024-6387, in OpenSSH allows
unauthenticated remote code execution with root privileges on glibc-based Linux
systems. A cyber espionage group known as Velvet Ant, linked to China, has been
exploiting the CVE-2024-20399 zero-day vulnerability since April to spread malware.
These increasing threats present a significant and immediate danger to users worldwide.

**Subscribe**to receive our weekly threat digests and newsletters directly in your inbox.

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L

AI Score

7.4

Confidence

High

EPSS

0.971

Percentile

99.8%