Huge Increase in Scanning for CVE-2017-9841 With Large Variability in Scanning Infrastructure
ATT&CK techniques detected
T1190Exploit Public-Facing Application
83%
"##e - 2017 - 9841 scanning source analysis the massive increase in scanning this month for cve - 2017 - 9841 strikes us as very odd. why would scanning for this 7 - year - old vulnerability suddenly spike? it seems unlikely that there are a lot of vulnerable, unpatched instances …"
Which technique(s) should be tagged here? Pick zero or more — leaving blank just records that the original was wrong.
No matches for .
Loading techniques…
T1584.005Botnet
49%
"##9, along with modest increases in cve - 2019 - 9082, and cve - 2022 - 47945. figure 3. traffic volume by vulnerability. this view accentuates the recent changes in both cve - 2023 - 1389 and cve - 2017 - 9841. conclusions despite the oddities of this month, we continue to see a…"
Which technique(s) should be tagged here? Pick zero or more — leaving blank just records that the original was wrong.
No matches for .
Loading techniques…
T1588.006Vulnerabilities
31%
"huge increase in scanning for cve - 2017 - 9841 with large variability in scanning infrastructure introduction welcome to the june 2024 installment of the sensor intelligence series, our monthly summary of vulnerability intelligence based on distributed passive sensor data. we ob…"
Which technique(s) should be tagged here? Pick zero or more — leaving blank just records that the original was wrong.
No matches for .
Loading techniques…
Summary
The rather old CVE-2017-9841, an RCE in PHPUnit, suddenly jumps to the top of our list, with an increase of nearly 400% since last month. We dig into the scanning infrastructure.