TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Sensor Intel Series: Top CVEs in March 2024

2024-04-30 · Read original ↗

ATT&CK techniques detected

6 predictions
T1587.004Exploits
49%
“100. 0 % 9. 8 0. 87221 cve - 2021 - 25003 0 - 3 - 100. 0 % 9. 8 0. 97734 cve - 2021 - 25369 0 - 3 - 100. 0 % 6. 2 0. 44972 cve - 2021 - 29203 0 0 0. 0 % 9. 8 0. 99322 cve - 2021 - 31589 0 0 0. 0 % 6. 1 0. 6825 cve - 2021 - 32172 0 - 3 - 100. 0 % 9. 8 0. 96666 cve - 2021 - 33357 0…”
T1587.004Exploits
48%
“##11 0 0 0. 0 % 9. 8 0. 96264 cve - 2020 - 25213 0 - 4 - 100. 0 % 9. 8 0. 99912 cve - 2020 - 27982 0 0 0. 0 % 6. 1 0. 64562 cve - 2020 - 28188 0 - 3 - 100. 0 % 9. 8 0. 99856 cve - 2020 - 7796 0 0 0. 0 % 9. 8 0. 97966 cve - 2020 - 7961 0 - 6 - 100. 0 % 9. 8 0. 99959 cve - 2020 - 9…”
T1587.004Exploits
46%
“. 8 0. 99921 cve - 2021 - 26084 4 - 70 - 94. 6 % 9. 8 0. 99946 cve - 2022 - 21587 4 1 33. 3 % 9. 8 0. 99881 cve - 2014 - 6287 2 - 43 - 95. 6 % 9. 8 n / a cve - 2015 - 8813 2 2 0. 0 % 8. 2 0. 76191 cve - 2017 - 0929 2 2 0. 0 % 7. 5 0. 80646 cve - 2017 - 17731 2 2 0. 0 % 9. 8 0. 89…”
T1588.006Vulnerabilities
46%
“23. 9 % 9. 8 0. 99977 cve - 2019 - 18935 139 - 47 - 25. 3 % 9. 8 0. 98961 cve - 2019 - 9082 134 - 100 - 42. 7 % 8. 8 0. 9995 cve - 2018 - 10561 128 22 20. 8 % 9. 8 0. 99773 cve - 2022 - 40684 122 122 0. 0 % 9. 8 0. 99792 2018 jaws web server vuln 94 54 135. 0 % na n / a cve - 201…”
T1190Exploit Public-Facing Application
42%
“23. 9 % 9. 8 0. 99977 cve - 2019 - 18935 139 - 47 - 25. 3 % 9. 8 0. 98961 cve - 2019 - 9082 134 - 100 - 42. 7 % 8. 8 0. 9995 cve - 2018 - 10561 128 22 20. 8 % 9. 8 0. 99773 cve - 2022 - 40684 122 122 0. 0 % 9. 8 0. 99792 2018 jaws web server vuln 94 54 135. 0 % na n / a cve - 201…”
T1595.002Vulnerability Scanning
39%
“##e - 2023 - 1389 at the top. once we found a good signature for this vulnerability, we found that it ’ s activity pattern over the last year had been quite low, but present, in 2023, and suddenly jumped by several orders of magnitude in the last three months. clearly, someone is…”

Summary

TP-Link Archer AX21 Wifi Router targeting, plus a handful of new CVEs! See what mass scanning looks like in March 2024.