~Paloalto~
A critical RCE flaw in Erlang/OTP's SSH is actively exploited, heavily targeting OT environments.
-
IOCs: 146. 103. 40. 203, 194. 165. 16. 71, dns. outbound. watchtowr. com
-
#CVE202532433 #OT #RCE #ThreatIntel
email firmate da google usate per phishing via oauth, microsoft entra blocca utenti per rollout mace, exploit ssh per erlang otp permette esecuzione remota senza autenticazione
#CVE202532433 #dkim #dkimspoofing #gmail #GoogleOAuth #lockout
www.matricedigitale.it/sicurezza-in...
#Erlang / #OTP 25.3.2.20 (old old stable) has been released ( #Ericsson / #OpenTelecomPlatform / #ErlangOTP / #TLS13 / #CVE / #CVE202532433 ) erlang.org
#Erlang / #OTP 26.2.5.11 (old stable) has been released ( #Ericsson / #OpenTelecomPlatform / #ErlangOTP / #TLS13 / #CVE / #CVE202532433 ) erlang.org
#Erlang / #OTP 27.3.3 (stable) has been released ( #Ericsson / #OpenTelecomPlatform / #ErlangOTP / #TLS13 / #CVE / #CVE202532433 ) erlang.org
vulnerabilità in erlang otp, microsoft windows server e prodotti cisco evidenziano l’interdipendenza e la fragilità delle architetture cloud e ibride moderne
#CiscoNexusDashboardLDAP #CVE202532433 #ErlangSSHvulnerability #escalation #KB5059087 #Microsoft #rc
www.matricedigitale.it/sicurezza-in...