Kevin Beaumont on Nostr: Complete exploitation info for #ConnectAround is now public. It’s a chaotic mix of ...
Complete exploitation info for #ConnectAround is now public.
https://attackerkb.com/topics/AdUh6by52K/cve-2023-46805It’s a chaotic mix of ../../ directory traversal and open APIs… if you haven’t applied the mitigations you’re going to have a really bad time as ransomware groups will jump on the train soon. #threatintel
Published at
2024-01-16 14:49:29Event JSON
{
"id": "2d631413610a57efc98eccfd6fcd77d18affb02364a88dc7ca870218e878abe0",
"pubkey": "f6870afcde4480ec8508f50304859e14a51309ff24ab3f0f862c52bdc4af8747",
"created_at": 1705416569,
"kind": 1,
"tags": [
[
"e",
"26912b4a42e26776dbaece0ebfdb186283d118c31c6e047bbd7820b8696c6a76",
"wss://relay.mostr.pub",
"reply"
],
[
"t",
"connectaround"
],
[
"t",
"threatintel"
],
[
"proxy",
"https://cyberplace.social/users/GossiTheDog/statuses/111766180284989498",
"activitypub"
]
],
"content": "Complete exploitation info for #ConnectAround is now public. https://attackerkb.com/topics/AdUh6by52K/cve-2023-46805\n\nIt’s a chaotic mix of ../../ directory traversal and open APIs… if you haven’t applied the mitigations you’re going to have a really bad time as ransomware groups will jump on the train soon. #threatintel\n\nhttps://cyberplace.social/system/media_attachments/files/111/766/180/009/335/003/original/6cc99c1170bfda8d.jpeg",
"sig": "20e577e9433c5e38f33ec633639ae88c74530571d5f995e5f54212f44f201aa1e4901902434feb932865f4cfab866d9c973300b342105ac2e260b1c41164737c"
}