Threat Advisories:
July 22, 2024

Attacks, Vulnerabilities and Actors 15 to 21 July 2024

For a detailed threat digest, download the pdf file here

Summary

HiveForce Labs recently made several significant discoveries in the realm of
cybersecurity threats. In the past week alone, a total of five attacks were executed, four vulnerabilities were uncovered, and three active adversaries were identified. These findings underscore the persistent danger of cyberattacks.

Additionally, HiveForce Labs has identified a cyber threat actor known as Void Banshee exploiting the CVE-2024-38112 vulnerability by manipulating the MHTML protocol handler to deceive Windows users into executing remote code. The APT group Void Banshee utilizes this flaw to deploy the Atlantida stealer, which is designed to exfiltrate sensitive information and achieve financial gain.

Furthermore, EstateRansomware a newly identified ransomware group exploiting the CVE-2023-27532 vulnerability in Veeam Backup & Replication software to deploy file-encrypting malware and extort payments. The attack gains initial access to the target environment by brute-forcing a dormant account on a Fortinet FortiGate VPN appliance. These rising attacks present a significant and immediate threat to users globally.

Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo

Cyber Horizons 2025

What Last Year’s Attacks Reveal About Today’s Risks

Watch the Webinar on-demand and get a FREE copy of our Cyber Horizons 2025 report.

Our Speakers
Speaker 1

Prateek Bhajanka Global Field CISO & Former Gartner Analyst Hive Pro Inc.

Speaker 2

Ankit Mani Manager Threat Intel HiveForce Labs

Speaker 3

Sreevani Tonipe Senior Threat Researcher HiveForce Labs