PacketWatch_Logo_Inline_Reverse

 

Threat Intelligence Research

Read our latest threat intelligence, produced by our team of battle-hardened analysts and research team.

CVE-2024-0204: Fortra GoAnywhere MFT Authentication Bypass

1 min read

CVE-2024-0204: Fortra GoAnywhere MFT Authentication Bypass

Fortra just released a security bulletin detailing a new critical authentication bypass vulnerability in their GoAnywhere Managed File Transfer (MFT) solution.

Read More
cyber threat intel January 15 2023 by packetwatch cybersecurity

4 min read

Cyber Threat Intelligence Briefing - January 15, 2024

Welcome back for another bi-weekly threat intelligence report from PacketWatch. This week, we cover recent Twitter/X account compromises and a...

Read More
2024 cyber threat intelligence qbot

5 min read

Cyber Threat Intelligence Briefing - January 2, 2024

PacketWatch returns in 2024 with our bi-weekly threat intelligence report. This week, we cover the return of Qbot, a Google Oauth cookie hijacking...

Read More
top December vulnerabilities 2023

5 min read

Cyber Threat Intelligence Briefing - December 18, 2023

We are entering that wonderful time of year when security researchers across the globe race to publish the vulnerability research that they have...

Read More
apache struts vulnerability remote code execution

1 min read

CVE-2023-50164: Apache Struts Unauthenticated File Upload Remote Code Execution

On December 7, Apache released a patch for their open-source Model-View-Controller (MVC) framework, Apache Struts.

Read More
dalle image generated cybersecurity python poshc2 Russian doll

5 min read

Python PoshC2: Analysis of an IP Indicator of Compromise (IOC)

PacketWatch recently analyzed an open directory based on a tweet from Germán Fernández showing an IP that was hosting malicious files and code.

Read More
threat intelligence December 4 2023

4 min read

Cyber Threat Intelligence Briefing - December 4, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights the recent Okta breach, Google Ads being used to...

Read More
threat intel cybersecurity 11-20-2023

3 min read

Cyber Threat Intelligence Briefing - November 20, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights the Rhysida ransomware group and a vulnerability...

Read More
SysAid vulnerability

2 min read

CVE-2023-47246: SysAid 0-Day Vulnerability

Late on November 8, 2023, SysAid announced they had evidence their product was being actively exploited via a 0-day vulnerability, now tracked as...

Read More
cyber threat intel blackcat alphv

4 min read

Cyber Threat Intelligence Briefing - November 6, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights Microsoft's latest Octo Tempest and ALPHV/BlackCat...

Read More