September 10, 2024

Weekly Threat Digest: September 02 – September 08, 2024

For a detailed threat digest, download the pdf file here


Summary

HiveForce Labs has recently made significant advancements in identifying cybersecurity threats. Over the past week alone, HiveForce Labs has detected six attacks, reported fifteen vulnerabilities, and identified two active adversaries. These findings highlight the relentless and escalating danger of cyber intrusions.

Additionally, a command injection vulnerability (CVE-2024-20469) in Cisco ISE allows admin users to execute arbitrary commands and escalate to root. RansomHub, a RaaS platform active since February 2024, has targeted over 200 victims using double extortion to encrypt and steal data for ransom.

Furthermore, Citrine Sleet, North Korean hackers exploited a patched Google Chrome zero-day (CVE-2024-7971) to deploy the FudModule rootkit, using a Windows Kernel exploit to gain SYSTEM privileges and maintain persistent access. These rising threats pose significant and immediate danger to users worldwide.

Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo