Chinese-linked actors are targeting edge devices across Southeast Asia, leveraging DoH for C2 communications and large-scale DNS hijacking via iptables.
See details:
EN: https://t.co/32wGyWROwR
CN: https://t.co/7mpQgo4I6V
My detailed analysis report of SolarWinds Security Event Manager AMF Deserialization RCE (CVE-2024-0692), with two methods to achieve RCE
https://t.co/Z7Q6rZa3Pg
https://t.co/G9nuOFJX7f
We've recreated a proof-of-concept for the SysAid CVE-2023-47246 remote code execution and compromise -- blog post coming ASAP😜
Big thanks to @gleeda @HuskyHacksMK @DaveKleinatland@calebjstewart and the whole @HuntressLabs crew helping dig into this one!
After two days, I finally reproduced the CVE-2023-39476 Inductive Automation Ignition JavaSerializationCodec Deserialization RCE vulnerability submitted to ZDI by @steventseeley