The PacketWatch Intelligence Team

2024 cyber threat intelligence qbot

5 min read

Cyber Threat Intelligence Briefing - January 2, 2024

PacketWatch returns in 2024 with our bi-weekly threat intelligence report. This week, we cover the return of Qbot, a Google Oauth cookie hijacking technique, and a vulnerability roundup.

Read More
top December vulnerabilities 2023

5 min read

Cyber Threat Intelligence Briefing - December 18, 2023

We are entering that wonderful time of year when security researchers across the globe race to publish the vulnerability research that they have...

Read More
apache struts vulnerability remote code execution

1 min read

CVE-2023-50164: Apache Struts Unauthenticated File Upload Remote Code Execution

On December 7, Apache released a patch for their open-source Model-View-Controller (MVC) framework, Apache Struts.

Read More
dalle image generated cybersecurity python poshc2 Russian doll

5 min read

Python PoshC2: Analysis of an IP Indicator of Compromise (IOC)

PacketWatch recently analyzed an open directory based on a tweet from Germán Fernández showing an IP that was hosting malicious files and code.

Read More
threat intelligence December 4 2023

4 min read

Cyber Threat Intelligence Briefing - December 4, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights the recent Okta breach, Google Ads being used to...

Read More
threat intel cybersecurity 11-20-2023

3 min read

Cyber Threat Intelligence Briefing - November 20, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights the Rhysida ransomware group and a vulnerability...

Read More
SysAid vulnerability

2 min read

CVE-2023-47246: SysAid 0-Day Vulnerability

Late on November 8, 2023, SysAid announced they had evidence their product was being actively exploited via a 0-day vulnerability, now tracked as...

Read More
cyber threat intel blackcat alphv

4 min read

Cyber Threat Intelligence Briefing - November 6, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights Microsoft's latest Octo Tempest and ALPHV/BlackCat...

Read More
threat intel October 23 2023

5 min read

Cyber Threat Intelligence Briefing - October 23, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights two critical zero-days from Cisco and critical...

Read More
Citrix NetScaler CVE-2023-4966 CVE-2023-4967

1 min read

New Critical Vulnerability in Citrix NetScaler Exposes 'Sensitive Information'

Today, Citrix released a security bulletin highlighting two vulnerabilities in the NetScaler ADC and NetScaler Gateway platforms.

Read More