Vendor
high
advisory
ClickFix Campaign Targets macOS Users with Infostealers via Fake Utility Fixes
2 rules 5 TTPs 5 IOCsThe ClickFix campaign targets macOS users with fake utility fixes, tricking them into running malicious Terminal commands to install infostealing malware such as Macsync, Shub Stealer, and AMOS.
Microsoft Security Blog +2
macos
infostealer
clickfix
terminal
2r
5t
5i
critical
advisory
Craft Commerce SQL Injection Leading to Remote Code Execution
2 rules 2 TTPs 1 CVEA SQL injection vulnerability in the Craft Commerce TotalRevenue widget can lead to remote code execution through a chain of vulnerabilities including unsanitized widget settings in SQL expressions, enabled PDO Multi-Statement Queries, unrestricted unserialize(), and a FileCookieJar gadget chain, allowing attackers to write a PHP webshell to the server's webroot and achieve arbitrary command execution as the PHP process user.
Craft Commerce
craft-commerce
sql-injection
rce
webshell
2r
2t
1c