March 22, 2024, 1:10 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

A threat actor has been “aggressively” exploiting a number of known vulnerabilities in order to target U.S. government organizations, research and education institutions.


The threat actor, tracked by researchers under UNC5174, was first observed exploiting a known flaw in the F5 BIG-IP traffic management user interface (CVE-2023-46747), and as recently as February it was seen exploiting the known ConnectWise ScreenConnect bug (CVE-2024-1709). The threat actor was seen targeting various other vulnerabilities between October and February, including ones in Atlassian Confluence …

actor big big-ip connectwise cve cve-2023-46747 education exploiting exploits flaw flaws government institutions interface known vulnerabilities management order organizations research researchers target threat threat actor traffic traffic management under user interface u.s. government vulnerabilities

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Associate Compliance Advisor

@ SAP | Budapest, HU, 1031

DevSecOps Engineer

@ Qube Research & Technologies | London

Software Engineer, Security

@ Render | San Francisco, CA or Remote (USA & Canada)

Associate Consultant

@ Control Risks | Frankfurt, Hessen, Germany

Senior Security Engineer

@ Activision Blizzard | Work from Home - CA