Rewterz Threat Advisory – CVE-2022-39947 – Fortinet FortiADC Vulnerability
January 5, 2023Rewterz Threat Advisory – CVE-2022-35845 – Fortinet FortiTester Vulnerability
January 5, 2023Rewterz Threat Advisory – CVE-2022-39947 – Fortinet FortiADC Vulnerability
January 5, 2023Rewterz Threat Advisory – CVE-2022-35845 – Fortinet FortiTester Vulnerability
January 5, 2023Severity
Medium
Analysis Summary
Matiex, first observed in July 2020, is a keystroke logger that is capable of taking screenshots, record sound with the computer microphone, and store data to the system clipboard. It is used by the cyber criminals to capture sensitive data like logins, passwords, credentials, and other information. This malware generates fake pop-ups and it also contains a feature of self-destruction which allows it to uninstall automatically after a particular time. This malware is sold in underground forums and the reason behind it’s popularity is ease of use and price. This malware was used to target industrial organizations in an information theft campaign recently.
Impact
- Credential Theft
Indicators of Compromise
MD5
- 00a9889993cc0fb8d150e7cea212e295
SHA-256
- e2e3877d5964d7b25f746929ccd4200f22901f3cfe108f2d03c11d28b4562b05
SHA-1
- 9da08b5a0ea95a81cbd17447055b89ccc1e3881f
Remediation
- Block all threat indicators at your respective controls.
- Search for Indicators of compromise (IOCs) in your environment utilizing your respective security controls
- Emails from unknown senders should always be treated with caution.
- Never trust or open ” links and attachments received from unknown sources/senders.