Rewterz Threat Alert – Apache ActiveMQ Vulnerability Exploited by HelloKitty Ransomware Gang – Active IOCs
Tags
country: | China Germany India South Korea |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Phishing - T1660 Phishing - T1566 Software - T1592.002 Vulnerabilities - T1588.006 |
Common Information
Type | Value |
---|---|
UUID | f59fde21-70e3-4788-829c-bb45cfa2e32e |
Fingerprint | 85300c19ee17f61f |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Nov. 2, 2023, 9:33 a.m. |
Added to db | Nov. 8, 2023, 10:57 a.m. |
Last updated | Oct. 29, 2024, 3:31 p.m. |
Headline | Rewterz Threat Alert – Apache ActiveMQ Vulnerability Exploited by HelloKitty Ransomware Gang – Active IOCs |
Title | Rewterz Threat Alert – Apache ActiveMQ Vulnerability Exploited by HelloKitty Ransomware Gang – Active IOCs |
Detected Hints/Tags/Attributes | 44/3/14 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 365 | ✔ | — | https://www.rewterz.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 84 | cve-2023-46604 |
|
Details | File | 13 | m2.png |
|
Details | File | 13 | m4.png |
|
Details | md5 | 2 | 478dcb54e0a610a160a079656b9582de |
|
Details | md5 | 1 | c7198ed957a2e21b4a3349e9d2220690 |
|
Details | md5 | 2 | 26ff72b0b85e764400724e442c164046 |
|
Details | sha1 | 1 | 5ea03fa8326ed87a0c81740092c131f23bc5f651 |
|
Details | sha1 | 1 | 5fc62671aef4b355d2050bf2904c7615cb0795ea |
|
Details | sha1 | 1 | c789942d013d8b45b6988ecc6491f5f1a1746311 |
|
Details | sha256 | 4 | 8177455ab89cc96f0c26bc42907da1a4f0b21fdc96a0cc96650843fd616551f4 |
|
Details | sha256 | 4 | 8c226e1f640b570a4a542078a7db59bb1f1a55cf143782d93514e3bd86dc07a0 |
|
Details | sha256 | 4 | c3c0cf25d682e981c7ce1cc0a00fa2b8b46cce2fa49abe38bb412da21da99cb7 |
|
Details | IPv4 | 7 | 172.245.16.125 |
|
Details | Url | 6 | http://172.245.16.125/m2.png |