Threat Intel Updates - Dec 2023
  • 1 Minute to read
  • PDF

Threat Intel Updates - Dec 2023

  • PDF

Article summary

Threat Intel Updates - 21st Dec 2023


To ensure your SAFE platform is assessing risks based on our most recent threat intelligence, SAFE has made the following updates:

  • Technique mapping added/updated for 829 CVEs - Refer to List 1.
  • Updated CISA KEV CVEs - as of 29th Nov 2023 - Refer to List 2.
  • CVE registered on NVD as of 29th Nov 2023.
    • List 3 below indicates CVEs in NVD that have been assessed but may be subject to future review.
  • Additional known hacks:
    • Sony MoveIt Breach
    • Uber Technologies Breach
    • Saudi Aramco Breach
    • CVS Health Breach
    • Walmart Breach
    • Okta Breach
    • Optus Breach
    • Prgasus Airline Breach
    • Colonial Pipeline Ransomware Attack
    • Marriott Breach
    • Zoom Breach
    • Magellan Health Breach
    • First American Breach
    • Cathay Pacific Breach
    • Uber Breach
    • eBay Breach

Your SAFE score could be affected by these updates if your assets are discovered to be impacted by recently identified CVEs or TTP mappings or if you have existing Controls, CVEs, or TTP mappings that have been modified.

List 1: CVE Added/Updated - 21st Dec 2023

 

Your browser does not support PDF.click here to download

 

List 2 - KEV CVEs Added/Updated - 21st Dec 2023

  • CVE-2023-4911
  • CVE-2023-36584
  • CVE-2023-1671
  • CVE-2020-2551

List 3: CVEs that may be subject to future TTP mapping updates - 21st Dec 2023

None

Threat Intel Updates - 06th Dec 2023


To ensure your SAFE platform is assessing risks based on our most recent threat intelligence, SAFE has made the following updates:

Your SAFE score could be affected by these updates if your assets are discovered to be impacted by recently identified CVEs or TTP mappings or if you have existing Controls, CVEs, or TTP mappings that have been modified.

List 1: CVE Added/Updated - 06th Dec 2023

 

Your browser does not support PDF.click here to download

 

List 2 - KEV CVEs Added/Updated - 06th Dec 2023

  • CVE-2023-36845
  • CVE-2023-36846
  • CVE-2023-36847
  • CVE-2023-36851
  • CVE-2023-29552
  • CVE-2023-22518
  • CVE-2023-46604
  • CVE-2023-36844

List 3: CVEs that may be subject to future TTP mapping updates - 06th Dec 2023

None


Was this article helpful?