Blueprint WriteUp | RCE
Tags
attack-pattern: | Data Credentials - T1589.001 Powershell - T1059.001 Python - T1059.006 Server - T1583.004 Server - T1584.004 Tool - T1588.002 Powershell - T1086 Sudo - T1169 |
Common Information
Type | Value |
---|---|
UUID | 234da76b-c01e-4674-9f06-c5646d2fe891 |
Fingerprint | 3f8ab69225ada7a1 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Oct. 6, 2024, 9:49 a.m. |
Added to db | Oct. 6, 2024, 12:24 p.m. |
Last updated | Nov. 17, 2024, 6:55 p.m. |
Headline | Blueprint WriteUp | RCE |
Title | Blueprint WriteUp | RCE |
Detected Hints/Tags/Attributes | 36/1/12 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 167 | ✔ | Cybersecurity on Medium | https://medium.com/feed/tag/cybersecurity | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 339 | system.net |
|
Details | Domain | 22 | stream.read |
|
Details | File | 33 | install.php |
|
Details | File | 1 | oscommerce2_3_4rce.py |
|
Details | File | 76 | mimikatz.exe |
|
Details | File | 2 | mimikatz32.exe |
|
Details | IPv4 | 1 | 10.10.118.119 |
|
Details | IPv4 | 1 | 10.10.31.69 |
|
Details | IPv4 | 2 | 10.11.69.113 |
|
Details | Url | 1 | http://blueprint.thm |
|
Details | Url | 1 | http://blueprint.thm:8080 |
|
Details | Url | 1 | http://10.10.31.69:8080/oscommerce-2.3.4/catalog |