Threat Intelligence Bulletin – Vulnerable QNAP NAS Devices, Phishing Campaign Delivering Cobalt Strike, and Atlassian Confluence Flaws

Ransomware targeting vulnerable QNAP Network Attached Storage devices


PHP flaw in QNAP Network Attached Storage devices leads to RCE vulnerability


Threat analyst outlines phishing campaign delivering Cobalt Strike


New NTLM relay attack uses Distributed File System and Namespace Management Protocol to take over domains


Large number of flaws found in Siemens’ SINEC network management system, some allowing for RCE


Atlassian Confluence flaw CVE-2022-26134 being exploited to deliver ransomware and crypto miners


Fake voicemail phishing campaign targeting US-based organizations, seeking Office365 and Outlook login credentials