
Ransomware Spotlight: INC | Trend Micro (US)
INC ransomware was first detected in July 2023, but has already released new versions: one that targets Linux computers and an update on their Windows variant. The ransomware has been observed to exploit CVE-2023-3519 and uses HackTool.Win32.ProcTerminator.A for defense evasion and HackTool.PS1.VeeamCreds for credential access in its different attack chains.

GitHub - BishopFox/CVE-2023-3519: RCE exploit for CVE-2023-3519
RCE exploit for CVE-2023-3519. Contribute to BishopFox/CVE-2023-3519 development by creating an account on GitHub.
GitHubWe just published our #Rapid7 technical analysis of CVE-2023-3519 (#CVE_2023_3519 / #CVE20233519) - a stack-based buffer overflow in Citrix ADC! Got to work with my new co-worker @fulmetalpackets on this one for the first time!
https://attackerkb.com/topics/si09VNJhHh/cve-2023-3519/rapid7-analysis

CVE-2023-3519 | AttackerKB
On Tuesday, July 18, Citrix published a security bulletin warning users of three vulnerabilities affecting NetScaler ADC and NetScaler Gateway. Of the three vu…
AttackerKB