The Shadowserver Foundation’s Post

We've improved the scanning/detection for vulnerable instances of ConnectWise ScreenConnect (CVE-2024-1709/CVE-2024-1708) - we now see over 8200 vulnerable instances (on 2024-02-21). CVE-2024-1709 is widely exploited in the wild - 643 IPs seen attacking to date by our sensors. Data has so far been shared tagged as "vulnerable-screenconnect" but will now be tagged "cve-2024-1709" starting from today's scans, now that a CVE has been assigned: https://lnkd.in/dsA3E6A3 World map: https://lnkd.in/dV3V6Z8U Tree map: https://lnkd.in/ddY3d4hG CVE-2024-1709 is also now on the Cybersecurity and Infrastructure Security Agency KEV list - https://lnkd.in/dfcEJ2u3 Vendor advisory https://lnkd.in/grVAxUv3 If you receive an alert from us on your instances assume compromise #cybersecurity #threatintelligence #vulnerabilitymanagement #vulnerabilities #attacksurfacemanagement #attacksurface #earlywarning #shadowserver #cybercivildefense

  • No alternative text description for this image

Thanks for your support on Cyber Civil Defense, that's great intel for vulnerable companies!

Like
Reply

To view or add a comment, sign in

Explore topics