Vendor
high
advisory
NoMachine Remote Code Execution Vulnerability
1 TTPA remote code execution vulnerability exists in NoMachine that allows an authenticated attacker to execute arbitrary code on the host system.
NoMachine
1t
medium
advisory
Suspicious DNS Queries to Remote Monitoring and Management Domains from Non-Browser Processes
1 rule 193 IOCsThis brief details the detection of DNS queries targeting commonly abused Remote Monitoring and Management (RMM) or remote access software domains, originating from non-browser processes, which is a common tactic for command and control, persistence, and lateral movement by threat actors.
01com +151
windows
command-and-control
endpoint
rmm
remote-access
1r
193i