Threat Intelligence Report | Crowdstrike, FIN7, RegreSSHion
It hasn’t exactly been a quiet summer in terms of cybersecurity. While a certain high-profile incident dominated IT news in July *Coughs Crowdstrike Coughs*, there’s also been a range of other issues and new threats you might not have heard about.
At Synextra, we’ve been on the lookout, as always, for the important happenings in IT security. So here are the main stories we think you need to know about this month, along with ways to keep your organisation safe from these new threats.
Here’s the top stories
• regreSSHion: Remote unauthenticated code execution vulnerability in OpenSSH server
• Zero-click Windows TCP/IP RCE impacts all systems with IPv6 enabled – patch now!
• CISA warns of VMware ESXi bug exploited in ransomware attacks
• Cybercrime gang enhances ops with new EDR bypasses and automated attacks
• Crowdstrike releases root cause analysis for Falcon sensor BSOD
• Fake IT support sites push malicious PowerShell scripts as Windows fixes
Chapters:
00:00 Intro
00:07 SSH Security Flaw
00:48 Microsoft IPv6 Update
01:18 VMware ESXi Bug Exploited – CVE-2023-20867
01:56 Cybercrime Gang Enhances Ops
02:37 Malicious PowerShell Scripts
03:21 CrowdStrike Global Outage Analysis
04:20 Active Outbreaks
05:24 Outro
05:37 Bloopers
—
About Synextra
We’re your new favourite cloud provider.
Based in the North-West of England, our team of experts help organisations like yours thrive in the new era of cloud tech.
Visit Synextra.co.uk to find out more and book a chat with one of our cloud specialists. We’d love to show you just how good a cloud-powered work life can be.
Connect with us:
• Twitter:
• Facebook:
• LinkedIn:
• YouTube: / @synextra
• Linktree:
[ad_2]
source