Threat Intelligence Bulletin – Vulnerable QNAP NAS Devices, Phishing Campaign Delivering Cobalt Strike, and Atlassian Confluence Flaws
June 22, 2022
Ransomware targeting vulnerable QNAP Network Attached Storage devices
PHP flaw in QNAP Network Attached Storage devices leads to RCE vulnerability
Threat analyst outlines phishing campaign delivering Cobalt Strike
New NTLM relay attack uses Distributed File System and Namespace Management Protocol to take over domains
Large number of flaws found in Siemens’ SINEC network management system, some allowing for RCE
Atlassian Confluence flaw CVE-2022-26134 being exploited to deliver ransomware and crypto miners
Fake voicemail phishing campaign targeting US-based organizations, seeking Office365 and Outlook login credentials