May 30, 2023, 2:05 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

 


April 2023 Windows Updates brought a fix for CVE-2023-21554,
a remote code execution vulnerability in Microsoft Message Queuing
Service. The vulnerability, nicknamed "QueueJumper" was reported to Microsoft by Wayne Low of Fortinet's FortiGuard Lab and Haifei Li with Check Point Research.

The first proof-of-concept became available on April 30, when Omair from Krash Consulting published it on GitHub. Another proof-of-concept by zoemurmure became available on May 18. Both of these made it possible for us to create a micropatch …

april check check point code code execution concept cve cve-2023-21554 fix fortinet lab low message microsoft point proof-of-concept remote code remote code execution research service updates vulnerability windows windows updates

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Cloud Security Engineer

@ City National Bank of Florida | Miami, FL, United States

Principal Security Engineer

@ VIANT | New York City

Associate Detection & Response Analyst

@ Rapid7 | VA Arlington 22203