HomuWitch Analysis

IOB - Indicator of Behavior (28)

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Lang

en22
zh4
ru2

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Country

sc22
cn4
ir2

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Actors

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Activities

Interest

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Type

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vendor

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Product

PaperCut MF2
PaperCut NG2
XXL-JOB2
ElkaGroup Image Gallery2
ciubotaru share-on-diaspora2

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vulnerabilities

#VulnerabilityBaseTemp0dayTodayExpRemEPSSCTICVE
1SourceCodester Online Student Management System edit-class-detail.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.001480.06CVE-2023-1099
2SourceCodester Sales Tracker Management System view_product.php sql injection6.66.5$0-$5k$0-$5kProof-of-ConceptNot Defined0.002040.03CVE-2023-0964
3Apache Solr Operator log file4.34.1$5k-$25k$0-$5kNot DefinedOfficial Fix0.000430.00CVE-2024-31391
4SourceCodester Library Management System bookdetails.php sql injection7.16.9$0-$5k$0-$5kProof-of-ConceptNot Defined0.003220.18CVE-2022-2214
5Itech Movie Portal Script film-rating.php Error sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.004250.03CVE-2017-20143
6SourceCodester Employee Task Management System admin-manage-user.php redirect7.36.9$0-$5k$0-$5kProof-of-ConceptNot Defined0.000450.32CVE-2024-2569
7QNAP QuMagie sql injection7.57.4$0-$5k$0-$5kNot DefinedOfficial Fix0.000500.00CVE-2023-41284
8Multi-Vendor Online Groceries Management System view_product.php sql injection6.35.7$0-$5k$0-$5kProof-of-ConceptNot Defined0.002550.02CVE-2022-26632
9PaperCut MF/NG libsmb2 access control9.89.7$0-$5k$0-$5kHighOfficial Fix0.970720.03CVE-2023-27350
10Papercut NG/MF path traversal8.07.9$0-$5k$0-$5kNot DefinedOfficial Fix0.950730.02CVE-2023-39143
11Papercut NG/MF Script code injection7.26.5$0-$5k$0-$5kProof-of-ConceptOfficial Fix0.000000.02CVE-2023-39469
12Papercut NG unrestricted upload7.47.3$0-$5k$0-$5kNot DefinedOfficial Fix0.000810.03CVE-2023-3486
13Papercut NG XMLRPC improper authentication6.96.9$0-$5k$0-$5kNot DefinedNot Defined0.022170.00CVE-2023-4568
14Pivotal Spring Framework deserialization9.89.5$0-$5k$0-$5kProof-of-ConceptNot Defined0.024440.00CVE-2016-1000027
15SourceCodester Online Food Ordering System view_prod.php sql injection6.76.5$0-$5k$0-$5kProof-of-ConceptNot Defined0.001080.05CVE-2023-0303
16ElkaGroup Image Gallery view.php sql injection7.37.3$0-$5k$0-$5kNot DefinedNot Defined0.001490.00CVE-2008-5037
17XXL-JOB New Password updatePwd cross-site request forgery5.04.9$0-$5k$0-$5kProof-of-ConceptNot Defined0.000710.03CVE-2023-0674
18ciubotaru share-on-diaspora new_window.php cross site scripting4.44.3$0-$5k$0-$5kNot DefinedOfficial Fix0.000630.03CVE-2017-20176
19SSH SSH-1 Protocol cryptographic issues7.37.0$0-$5k$0-$5kNot DefinedOfficial Fix0.002580.08CVE-2001-1473
20Google Android System Service authorization6.56.4$5k-$25k$0-$5kNot DefinedOfficial Fix0.000430.02CVE-2022-20434

IOC - Indicator of Compromise (4)

These indicators of compromise highlight associated network ressources which are known to be part of research and attack activities.

TTP - Tactics, Techniques, Procedures (9)

Tactics, techniques, and procedures summarize the suspected MITRE ATT&CK techniques used. This data is unique as it uses our predictive model for actor profiling.

IOA - Indicator of Attack (17)

These indicators of attack list the potential fragments used for technical activities like reconnaissance, exploitation, privilege escalation, and exfiltration. This data is unique as it uses our predictive model for actor profiling.

IDClassIndicatorTypeConfidence
1File/admin-manage-user.phppredictiveHigh
2File/film-rating.phppredictiveHigh
3File/librarian/bookdetails.phppredictiveHigh
4File/xxxxxxxx/xxxx_xxxxxxx.xxxpredictiveHigh
5File/xxxx/xxxxxxxxxpredictiveHigh
6Filexxxxx/xxxxxxxx/xxxx_xxxxxxx.xxxpredictiveHigh
7Filexxxxxxx/xxxx-xxxxx-xxxxxx.xxxpredictiveHigh
8Filexxxxxxx/xxxx-xxxxx-xxxxxx.xxx?xxxxxx=xpredictiveHigh
9Filexxx_xxxxxx.xxxpredictiveHigh
10Filexxxx.xxxpredictiveMedium
11Filexxxx_xxxx.xxxpredictiveHigh
12ArgumentxxxpredictiveLow
13ArgumentxxxxxxpredictiveLow
14ArgumentxxxxxxxxxxxxpredictiveMedium
15ArgumentxxpredictiveLow
16Argumentxxxxx/xxxpredictiveMedium
17Input Value' xxx (xxxxxx xxxx xxxx (xxxxxx(xxxxx(x)))xxxx)-- xxxxpredictiveHigh

References (2)

The following list contains external sources which discuss the actor and the associated activities:

Are you interested in using VulDB?

Download the whitepaper to learn more about our service!