Microsoft Warns of Continued Exploitation of CVE-2020-1472

Original release date: October 29, 2020Microsoft has released a blog post on cyber threat actors exploiting CVE-2020-1472, an elevation of privilege vulnerability in Microsoft’s Netlogon. A remote attacker can exploit…

Comments Off on Microsoft Warns of Continued Exploitation of CVE-2020-1472

AR20-303B: MAR-10310246-1.v1 – ZEBROCY Backdoor

Original release date: October 29, 2020DescriptionNotification This report is provided "as is" for informational purposes only. The Department of Homeland Security (DHS) does not provide any warranties of any kind…

Comments Off on AR20-303B: MAR-10310246-1.v1 – ZEBROCY Backdoor

CISA and CNMF Identify a New Malware Variant: Zebrocy

Original release date: October 29, 2020Content: The Cybersecurity and Infrastructure Security Agency (CISA) and the Department of Defense (DOD) Cyber National Mission Force (CNMF) have identified a malware variant—referred to…

Comments Off on CISA and CNMF Identify a New Malware Variant: Zebrocy

CISA, FBI, and CNMF Identify a New Malware Variant: ComRAT

Original release date: October 29, 2020The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), and the Department of Defense Cyber National Mission Force (CNMF) have identified…

Comments Off on CISA, FBI, and CNMF Identify a New Malware Variant: ComRAT

AR20-303A: MAR-10310246-2.v1 – PowerShell Script: ComRAT

Original release date: October 29, 2020Description Notification This report is provided "as is" for informational purposes only. The Department of Homeland Security (DHS) does not provide any warranties of any…

Comments Off on AR20-303A: MAR-10310246-2.v1 – PowerShell Script: ComRAT

AA20-301A: North Korean Advanced Persistent Threat Focus: Kimsuky

Original release date: October 27, 2020SummaryThis advisory uses the MITRE Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK®) version 7 framework. See the ATT&CK for Enterprise version 7 for all referenced…

Comments Off on AA20-301A: North Korean Advanced Persistent Threat Focus: Kimsuky

Vulnerability Summary for the Week of October 19, 2020

Original release date: October 26, 2020 The CISA Weekly Vulnerability Summary Bulletin is created using information from the NIST NVD. In some cases, the vulnerabilities in the Bulletin may not…

Comments Off on Vulnerability Summary for the Week of October 19, 2020