Product
high
advisory
QEMU Privilege Escalation Vulnerability
2 TTPsA local attacker can exploit a vulnerability in QEMU to elevate their privileges and execute arbitrary code on the host system where QEMU is running.
QEMU
privilege-escalation
virtualization
vulnerability
2t
high
advisory
QEMU and libvirt: Multiple Vulnerabilities
1 TTPMultiple vulnerabilities exist in QEMU and libvirt, which can be exploited by a local attacker to disclose sensitive information and bypass security mechanisms, potentially leading to privilege escalation.
QEMU +1
vulnerability
linux
virtualization
defense-evasion
privilege-escalation
collection
1t
high
advisory
Suspicious QEMU Execution on Windows
2 rules 2 TTPsDetects the execution of QEMU with the -nographic flag and an image file on Windows systems, a technique used for persistence and initial access by installing a rogue Linux virtual machine.
Splunk Enterprise +3
qemu
virtualization
persistence
linux
windows
2r
2t