H1 2023: Ransomware's Pivot to Linux and Vulnerable Drivers
Common Information
Type | Value |
---|---|
UUID | 7fa2f30c-1d17-4283-bfc3-66481dfa69be |
Fingerprint | 3b57e18b8c3c13afa3033758ba691fdba2d014750b3a05530bca8d8975e4772d |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Aug. 16, 2023, 1:51 p.m. |
Added to db | March 12, 2024, 6:49 p.m. |
Last updated | Aug. 31, 2024, 5:51 a.m. |
Headline | H1 2023: Ransomware's Pivot to Linux and Vulnerable Drivers |
Title | H1 2023: Ransomware's Pivot to Linux and Vulnerable Drivers |
Detected Hints/Tags/Attributes | 159/3/25 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://go.recordedfuture.com/hubfs/cta-2023-0817.pdf |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 117 | cve-2023-2868 |
|
Details | CVE | 243 | cve-2023-34362 |
|
Details | CVE | 115 | cve-2023-0669 |
|
Details | CVE | 61 | cve-2023-32434 |
|
Details | CVE | 51 | cve-2023-32435 |
|
Details | CVE | 48 | cve-2023-32439 |
|
Details | CVE | 176 | cve-2023-23397 |
|
Details | CVE | 73 | cve-2023-28252 |
|
Details | CVE | 40 | cve-2023-24932 |
|
Details | CVE | 127 | cve-2022-41082 |
|
Details | CVE | 397 | cve-2021-44228 |
|
Details | CVE | 36 | cve-2023-21716 |
|
Details | CVE | 46 | cve-2023-20887 |
|
Details | CVE | 38 | cve-2023-20867 |
|
Details | CVE | 18 | cve-2023-27992 |
|
Details | CVE | 10 | cve-2023-26258 |
|
Details | CVE | 66 | cve-2021-21974 |
|
Details | CVE | 140 | cve-2023-27350 |
|
Details | CVE | 54 | cve-2023-27351 |
|
Details | Domain | 546 | www.recordedfuture.com |
|
Details | Domain | 265 | recordedfuture.com |
|
Details | Mandiant Uncategorized Groups | 2 | UNC4697 |
|
Details | Mandiant Uncategorized Groups | 54 | UNC4841 |
|
Details | Threat Actor Identifier - APT | 783 | APT28 |
|
Details | Windows Registry Key | 4 | HKEY_LOCAL_MACHINE\SAM |