June 2024 | Cloud-Based Platform AIONCLOUD

[2024.06 Vulnerability Report] MOVEit Transfer SQL Injection(CVE-2023-34362)

Vulnerability report written by the TA team by analyzing “MOVEit Transfer SQL Injection(CVE-2023-34362)” This vulnerability is an attack exploited by the CL0P ransomware group, causing significant damage. Malicious users took advantage of the vulnerability to leak data and request money for stolen files. This vulnerability could allow an unauthenticated attacker to access and manipulate a Read more about [2024.06 Vulnerability Report] MOVEit Transfer SQL Injection(CVE-2023-34362)[…]

Compliment Relay June 2024 by Younghoon Jeong, Senior Researcher of MONITORAPP

                  hello. This is MONITORAPP. It’s the end of June, which means the peak of summer is just around the corner. As I always feel whenever Compliment Relay comes around, the months seem to fly by. Let’s take a look at the June Compliment Relay picks from Read more about Compliment Relay June 2024 by Younghoon Jeong, Senior Researcher of MONITORAPP[…]

[2024.06 Vulnerability Report] PHP-CGI Argument Injection

Vulnerability report written by the TA team by analyzin “PHP-CGI Argument Injection” The vulnerability is an Argument Injection vulnerability in PHP-CGI running on Windows that bypasses the Escape process by changing the hyphen (-) character used in the Argument Invention attack to a soft hyphen (0xAD) character using the “Best-Fit Mapping” feature of the Win32 Read more about [2024.06 Vulnerability Report] PHP-CGI Argument Injection[…]

MONITORAPP Cyber Threat Intelligence Platform – AILabs

                AILabs is a cyber threat intelligence platform developed and operated by the CTI division of MONITORAPP Research Institute. It was called AICC until two years ago, but it was renamed AILabs last year and has been evolving through continuous advancement. ​ There have been many changes and Read more about MONITORAPP Cyber Threat Intelligence Platform – AILabs[…]

[2024.06 Vulnerability Report] XZ Utils Backdoor

Vulnerability report written by the TA team by analyzin “XZ Utils Backdoor”     The XZ Utils backdoor is a backdoor that attackers have been preparing since 2001. It was discovered that a malicious user inserted malicious code into the open source XZ repository and distributed it without proper verification. The vulnerability was initially reported Read more about [2024.06 Vulnerability Report] XZ Utils Backdoor[…]

SSE Services Essential Security Elements – CASB

                  Hello, this is MONITORAPP. Today, as in the last time, we will continue to learn more about AIONCLOUD’s Security Service Edge (SSE) service, Secure Internet Access (SIA). SIA is a Zero-Trust-based security solution and is an SSE service that includes ‘SWG’, ‘FWaaS’, ‘CASB’, ‘NG DPI’, ‘ATP’, Read more about SSE Services Essential Security Elements – CASB[…]

SSE Services Essential Security Elements – NGDPI

    Hello, this is MONITORAPP. Today, as in the last time, we will continue to learn more about   AIONCLOUD’s Security Service Edge (SSE) platform, Secure Internet Access (SIA). SIA is a Zero-Trust-based security solution and is an SSE service that includes ‘SWG’, ‘FWaaS’, ‘CASB’, ‘NG DPI’, ‘ATP’, and ‘RBI’.   Following the introduction Read more about SSE Services Essential Security Elements – NGDPI[…]

Scroll Up