- 1 Minute to read
- Print
- PDF
Threat Intel Updates - Oct 2023
- 1 Minute to read
- Print
- PDF
Threat Intel Updates - 26th Oct
Release Date: 26th Oct 2023
To ensure your SAFE platform is assessing risks based on our most recent threat intelligence, SAFE has made the following updates:
- Technique mapping added/updated for 1040 CVEs - Refer to List 1
- Updated CISA KEV CVEs - as of 4th Oct 2023 - Refer to List 2
- CVE registered on NVD as of 4th Oct 2023.
- List 3 below indicates CVEs in NVD that have been assessed but may be subject to future review.
Your SAFE score could be affected by these updates if your assets are discovered to be impacted by recently identified CVEs or TTP mappings or if you have existing Controls, CVEs, or TTP mappings that have been modified.
List 1: CVE Added/Updated - 26th Oct
List 2 - KEV CVEs added/updated - 26th Oct
- CVE-2023-39362
- CVE-2023-4634
- CVE-2023-5217
- CVE-2023-4211
- CVE-2023-42793
- CVE-2023-28229
- CVE-2023-22515
- CVE-2023-40044
- CVE-2023-42824
- CVE-2023-21608
- CVE-2023-20109
- CVE-2023-41763
- CVE-2023-36563
- CVE-2023-44487
List 3: CVEs that may be subject to future TTP mapping updates - 11th Oct
None
Threat Intel Updates - 11th Oct
Release Date: 11th Oct 2023
To ensure your SAFE platform is assessing risks based on our most recent threat intelligence, SAFE has made the following updates:
- Technique mapping added/updated for 882 CVEs - Refer to List 1
- Updated CISA KEV CVEs - as of 20th Sept 2023 - Refer to List 2
- CVE registered on NVDas of 20th Sept 2023.
- List 3 below indicates CVEs in NVD that have been assessed but may be subject to future review.
- Bug Fixes
- Removed duplicate techniques in NIST CSF - Refer to List 4
- Added missing parent techniques in NIST CSF - Refer to List 5
Your SAFE score could be affected by these updates if your assets are discovered to be impacted by recently identified CVEs or TTP mappings or if you have existing Controls, CVEs, or TTP mappings that have been modified.
List 1: CVE Added/Updated - 11th Oct
List 2 - KEV CVEs added/updated - 11th Oct
- CVE-2023-28434
- CVE-2023-41179
- CVE-2023-41991
- CVE-2023-41992
- CVE-2023-41993
- CVE-2018-14667
List 3: CVEs that may be subject to future TTP mapping updates - 11th Oct
None
List 4: NIST CSF Duplicate Technique removal
- 51000016
- 51000017
- 51000018
- 51000020
- 51000030
- 51000032
- 51000033
- 51000034
- 51000036
- 51000046
- 51000048
- 51000049
- 51000050
- 51000052
- 51000060
- 51000061
- 51000066
- 51000068
- 51000080
- 51000081
List 5: NIST Missing Parent Technique addition
- 51000003
- 51000006
- 51000010
- 51000037