Alias Description | Votes |
---|---|
CVE-2020-1472 is a possible alias for Zerologon. CVE-2020-1472, also known as the Zerologon vulnerability, is a critical-severity flaw in Microsoft's Netlogon Remote Protocol. The vulnerability allows attackers to gain administrative access to a Windows domain controller without any authentication, effectively giving them control over a network. T | 9 |
Alias Description | Association Type | Votes |
---|---|---|
The Cuba Ransomware Malware is associated with Zerologon. The Cuba ransomware is a malicious software that first appeared on cybersecurity radars in late 2020 under the name "Tropical Scorpius." It is designed to exploit and damage computer systems, often infiltrating through suspicious downloads, emails, or websites without the user's knowledge. Once insi | Unspecified | 2 |
Alias Description | Association Type | Votes |
---|---|---|
The Ransomhub Threat Actor is associated with Zerologon. RansomHub, an increasingly active threat actor in the cyber security landscape, has been identified as the group behind several high-profile ransomware attacks. The group uses advanced tools and techniques to bypass security defenses and execute their malicious activities. In particular, RansomHub's | Unspecified | 2 |
The Rhysida Threat Actor is associated with Zerologon. Rhysida, a threat actor group known for its malicious activities, has been actively executing ransomware attacks since May 2023. The group is known for its use of various families of ransomware to aid in double extortion attacks, including BlackCat, Hello Kitty, Quantum Locker, Rhysida, Zeppelin — i | Unspecified | 2 |
Alias Description | Association Type | Votes |
---|---|---|
The Proxylogon Vulnerability is associated with Zerologon. ProxyLogon is a significant software vulnerability, specifically an SSRF (Server-Side Request Forgery) flaw in Microsoft Exchange Server, identified as CVE-2021-26855. This vulnerability allows attackers to bypass authentication mechanisms and impersonate users. Alongside ProxyShell vulnerabilities | Unspecified | 2 |
The Proxyshell Vulnerability is associated with Zerologon. ProxyShell is a significant software vulnerability affecting Microsoft Exchange email servers. The flaw lies in the design or implementation of the software, making it a potential target for attackers seeking to exploit system weaknesses. Since early 2021, various vulnerabilities including ProxyShel | Unspecified | 2 |
The Printnightmare Vulnerability is associated with Zerologon. PrintNightmare (CVE-2021-34527) is a significant vulnerability in the Windows Print Spooler service that allows an attacker to escalate privileges either locally or remotely by loading a malicious DLL which will be executed as SYSTEM. This flaw, potentially a new zero-day Microsoft vulnerability, en | Unspecified | 2 |
Preview | Source Link | CreatedAt | Title |
---|---|---|---|
Trend Micro | 17 days ago | ||
ESET | a month ago | ||
CISA | a month ago | ||
InfoSecurity-magazine | 3 months ago | ||
DARKReading | 4 months ago | ||
Flashpoint | 4 months ago | ||
DARKReading | 5 months ago | ||
CISA | 5 months ago | ||
CERT-EU | 7 months ago | ||
Securityaffairs | 9 months ago | ||
CERT-EU | 9 months ago | ||
Securityaffairs | 10 months ago | ||
CERT-EU | 10 months ago | ||
Securityaffairs | 10 months ago | ||
CERT-EU | a year ago | ||
CERT-EU | a year ago | ||
CERT-EU | a year ago | ||
Securityaffairs | a year ago | ||
CERT-EU | a year ago | ||
CERT-EU | a year ago |