PacketWatch_Logo_Inline_Reverse

 

Threat Intelligence Research

Read our latest threat intelligence, produced by our team of battle-hardened analysts and research team.

cyber threat intelligence blacklotus malware qr codes phising

3 min read

Cyber Threat Intelligence Briefing - July 3, 2023

Welcome back to another week of Cyber Threat Intelligence (CTI). This week's report highlights the use of QR codes in a new phishing campaign and guidance issued by the National Security Agency (NSA) to combat the BlackLotus malware.

Read More
CVE-2023-27997 Pre-Authentication Critical Vulnerability in Fortinet SSL VPN

1 min read

Pre-Authentication Critical Vulnerability in Fortinet SSL VPN

On Friday, June 9, 2023, Fortinet released new firmware updates for FortiOS. Over the weekend, security researchers shared on social media that this...

Read More
MOVEit File Transfer Zero-Day Critical Vulnerability

2 min read

I (don't) like to MOVEit MOVEit

NOTICE As this is actively being investigated and new information is continuously coming out, this information is subject to change. Please reach out...

Read More
Acropalypse Image Cropping Vulnerability Google Microsoft

2 min read

Acropalypse Now: New Bug and Zero-Day Discovered in Multiple Image Editing Products

Bottom Line Up Front (BLUF) Cropped screenshots on affected software leave behind image data that can be recovered, potentially revealing uncropped...

Read More
microsoft-outlook-vulnerability cve-2023-23397

1 min read

Critical Vulnerability in Outlook Requiring Little to No Interaction Patched by Microsoft

Read our latest Enterprise Threat Intelligence Briefing on the Microsoft Outlook Elevation of Privilege Vulnerability, compiled by Kyle Nordby and...

Read More
cisa-vmware-nsx-v-manager-cve

1 min read

CISA Adds Additional VMware Security Flaw to Known Exploited Vulnerabilities Catalog

CVE-2021-39144 – VMware Cloud Foundation XStream Remote Code Execution Vulnerability The Cybersecurity and Infrastructure Security Agency (CISA) has...

Read More
Robbinhood Ransomware Gang Still Operational

2 min read

Robbinhood Ransomware Gang Still Operational

Robbinhood History One of the most notorious ransomware gangs from 2019 and 2020 is known as Robbinhood (with 2 B’s). They made a name for themselves...

Read More
Conti Ransomware Group

2 min read

Lessons Learned from #ContiLeaks

ContiLeaks Background

Read More
CVE-2022-21907: New Wormable Vulnerability in Microsoft Windows

1 min read

CVE-2022-21907: New Wormable Vulnerability in Microsoft Windows

Included in the latest “Patch Tuesday” from Microsoft on January 11, 2022, is a fix for CVE-2022-21907 (CVSS3.1 9.8).

Read More