TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Scanning for CVE-2017-9841 Drops Precipitously

2024-08-22 · Read original ↗

ATT&CK techniques detected

2 predictions
T1588.006Vulnerabilities
34%
“) can breathe a sigh of relief. july vulnerabilities by the numbers figure 1 shows july attack traffic for the top ten cves that we track. note the continued presence of cve - 2023 - 1389, and cve - 2017 - 9841, but also the return of a few old friends that have been absent from …”
T1595.002Vulnerability Scanning
31%
“) can breathe a sigh of relief. july vulnerabilities by the numbers figure 1 shows july attack traffic for the top ten cves that we track. note the continued presence of cve - 2023 - 1389, and cve - 2017 - 9841, but also the return of a few old friends that have been absent from …”

Summary

Last issue, we observed huge amounts of scanning for the rather old CVE-2017-9841, an RCE in PHPUnit. This time it’s fallen off nearly as sharply. We look into why!