Tag
high
advisory
Destructive Deletion of System Backups via Wbadmin.exe
1 rule 1 TTPAdversaries utilize the legitimate Windows Backup utility to delete system and state backups as a destructive measure to inhibit recovery during ransomware operations.
ransomware
defense-evasion
backup-tampering
1r
1t
critical
advisory
nginx-ui Backup Restore Allows Tampering with Encrypted Backups
3 rules 2 TTPsThe nginx-ui backup restore mechanism allows attackers to tamper with encrypted backup archives and inject malicious configuration during restoration, potentially leading to arbitrary command execution.
nginx-ui
backup-tampering
vulnerability
3r
2t