Source |
CybeReason |
Identifiant |
3947500 |
Date de publication |
2022-01-11 13:40:10 (vue: 2022-01-11 17:06:28) |
Titre |
Threat Analysis Report: DatopLoader Exploits ProxyShell to Deliver QBOT and Cobalt Strike |
Texte |
At the beginning of 2021, security researcher Orange Tsai reported a series of vulnerabilities targeting Microsoft Exchange servers dubbed ProxyLogon. The Cybereason Incident Response team encountered many compromises during the year that involved these vulnerabilities. Additional vulnerabilities were disclosed during the year by Orange and others, including ProxyOracle and the last one in August dubbed ProxyShell. |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 additional analysis august beginning cobalt compromises cybereason datoploader deliver disclosed dubbed during encountered exchange exploits incident including involved last many microsoft one orange others proxylogon proxyoracle proxyshell qbot report: reported researcher response security series servers strike targeting team these threat tsai vulnerabilities year |
Tags |
|
Stories |
|
Move |
|