TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

The Register

Attackers are cashing in on fresh 'CopyFail' Linux flaw

Carly Page · 1 day ago · Read original ↗

ATT&CK techniques detected

3 predictions
T1068Exploitation for Privilege Escalation
97%
“of victims of critical cpanel vuln as ' millions ' of sites potentially exposed - microsoft ' s patch for a 0 - day exploited by russian spies fell short. another windows flaw is under attack - murder, she wrote : ex - fbi chief wants some ransomware crims charged with homicide t…”
T1068Exploitation for Privilege Escalation
77%
“attackers are cashing in on fresh ' copyfail ' linux flaw attackers are cashing in on fresh ' copyfail ' linux flaw researchers dropped a reliable root exploit and it didn ’ t sit idle for long cisa is warning that a newly - disclosed linux kernel bug dubbed " copyfail " is alrea…”
T1068Exploitation for Privilege Escalation
53%
“2023, rhel 10. 1, and suse 16, but the researchers warned that every mainstream linux kernel built since 2017 is in scope of potential exploitation. " same script, four distributions, four root shells — in one take. the same exploit binary works unmodified on every linux distribu…”

Summary

Researchers dropped a reliable root exploit and it didn’t sit idle for long

CISA is warning that a newly-disclosed Linux kernel bug dubbed "CopyFail" is already being exploited, just days after researchers dropped a working root-level exploit.…