Keep your eyes on these

VERY IMPORTANT

Security Articles

RSS

Fake CVE-2023-40477 Proof of Concept Leads to VenomRAT

released on 2023-09-19 @ 04:49:23 PM
Researchers should be aware of threat actors repurposing older proof of concept (PoC) code to quickly craft a fake PoC for a newly released vulnerability. On Aug. 17, 2023, the Zero Day Initiative publicly reported a remote code execution (RCE) vulnerability in WinRAR tracked as CVE-2023-40477. They had disclosed it to the vendor on June 8, 2023. Four days after the public reporting of CVE-2023-40477, an actor using an alias of whalersplonk committed a fake PoC script to their GitHub repository.