安全热点周报:严重的 Ivanti vTM 身份认证绕过漏洞现已被攻击利用
Tags
attack-pattern: Data
Common Information
Type Value
UUID 930474c3-c89c-4c03-8e5d-c1c641ef8dad
Fingerprint 3ef500f5dbc1df5b
Analysis status DONE
Considered CTI value 2
Text language
Published Sept. 26, 2024, midnight
Added to db Sept. 30, 2024, 1:49 p.m.
Last updated Nov. 15, 2024, 12:35 p.m.
Headline 安全热点周报:严重的 Ivanti vTM 身份认证绕过漏洞现已被攻击利用
Title 安全热点周报:严重的 Ivanti vTM 身份认证绕过漏洞现已被攻击利用
Detected Hints/Tags/Attributes 12/1/20
Attributes
Details Type #Events CTI Value
Details CVE 72
cve-2024-47176
Details CVE 36
cve-2024-7593
Details Domain 71
cybernews.com
Details Domain 208
mp.weixin.qq.com
Details Domain 14
www.cac.gov.cn
Details Domain 11
digital-strategy.ec.europa.eu
Details File 1
b22edba6e82b452fb564f1353138fb76.pdf
Details File 2
c_1729036112375138.htm
Details md5 1
b22edba6e82b452fb564f1353138fb76
Details Url 1
https://www.bleepingcomputer.com/news/security/critical-ivanti-vtm-auth-bypass-bug-now-exploited-in-attacks
Details Url 1
https://www.theguardian.com/uk-news/2024/sep/26/wifi-suspended-big-uk-train-stations-cybersecurity-incident
Details Url 1
https://www.bleepingcomputer.com/news/security/moneygram-confirms-a-cyberattack-is-behind-dayslong-outage
Details Url 2
https://cybernews.com/security/us-mc2-background-check-data-leak
Details Url 1
https://mp.weixin.qq.com/s/uyosto0fozxahq0dovudha
Details Url 1
https://ccsaweb.eos-beijing-7.cmecloud.cn/ccsa/20240929/b22edba6e82b452fb564f1353138fb76/b22edba6e82b452fb564f1353138fb76.pdf
Details Url 2
https://www.cac.gov.cn/2024-09/27/c_1729036112375138.htm
Details Url 2
https://mp.weixin.qq.com/s/kgbree03pkx-6zgvcxuxxw
Details Url 1
https://mp.weixin.qq.com/s/_a0us8no4vjglbi-s5kwna
Details Url 1
https://digital-strategy.ec.europa.eu/en/library/new-practical-guide-data-governance-act
Details Url 1
https://www.federalregister.gov/documents/2024/09/26/2024-21903/securing-the-information-and-communications-technology-and-services-supply-chain-connected-vehicles