Tag
high
advisory
ENDLESSDOORS Vulnerability Affecting Zbtlink Routers
1 TTPMultiple Zbtlink router models are susceptible to the ENDLESSDOORS root implant, which leverages the rctl remote control tool for unauthorized access and persistent phone-home capabilities.
CPE2801 Firmware +19
firmware-vulnerability
implant
router
network-security
informational
1t
high
advisory
QuickFox Supply Chain Attack and FDMTP Implant Deployment
1 TTPThreat actors compromised QuickFox software supply chain to distribute trojanized Windows installers, resulting in the installation of a custom FDMTP implant for persistent access.
QuickFox
supply-chain-attack
implant
windows
fortiguard
1t
updated
critical
advisory
Cisco IOS XE Web UI Implant Access via CVE-2023-20198
2 rules 1 TTP 1 CVE 4 IOCsExploitation of the Cisco IOS XE Web UI vulnerability (CVE-2023-20198) through crafted POST requests to obtain unauthorized access and maintain persistence on compromised devices.
PoC
IOS XE
cisco-ios-xe
web-ui
cve-2023-20198
implant
2r
1t
1c
4i
updated