GlobeImposter Analysis

IOB - Indicator of Behavior (14)

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Lang

en14

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Country

us14

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Actors

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Activities

Interest

Timeline

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Type

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vendor

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Product

SourceCodester Inventory Management System4
SourceCodester Simple Student Attendance System2
code-projects Human Resource Integrated System2
SourceCodester Online Tours & Travels Management S ...2
openBI2

The data in this chart does not reflect real data. It is dummy data, distorted and not usable in any way. You need an additional purchase to unlock this view to get access to more details of real data.

Vulnerabilities

#VulnerabilityBaseTemp0dayTodayExpRemEPSSCTICVE
1openBI Screen.php index code injection8.17.9$0-$5k$0-$5kProof-of-ConceptNot Defined0.000750.18CVE-2024-1117
2openBI Screen.php dlfile access control7.67.4$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.11CVE-2024-1114
3SourceCodester Online Tours & Travels Management System payment.php exec sql injection6.46.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.06CVE-2024-0884
4Totolink LR1200GB cstecgi.cgi setLanguageCfg stack-based overflow9.18.9$0-$5k$0-$5kProof-of-ConceptNot Defined0.001090.11CVE-2024-0577
5code-projects Simple Online Hotel Reservation System login.php sql injection8.17.9$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.03CVE-2024-0359
6code-projects Human Resource Integrated System inc_service_credits.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.03CVE-2024-0470
7Kashipara Food Management System stock_edit.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.14CVE-2024-0290
8Kashipara Food Management System rawstock_used_damaged_submit.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.04CVE-2024-0288
9SourceCodester Simple Student Attendance System actions.class.php save_attendance sql injection6.96.8$0-$5k$0-$5kProof-of-ConceptNot Defined0.001300.03CVE-2023-6771
10Thecosy IceCMS Captcha login excessive authentication5.34.8$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.06CVE-2023-6756
11SourceCodester Engineers Online Portal login.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.000770.00CVE-2023-5278
12Tongda OA 2017 delete.php sql injection6.96.8$0-$5k$0-$5kProof-of-ConceptOfficial Fix0.000770.14CVE-2023-5267
13SourceCodester Inventory Management System search_purchase_paymen_report.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.07CVE-2023-4557
14SourceCodester Inventory Management System staff_data.php sql injection7.57.3$0-$5k$0-$5kProof-of-ConceptNot Defined0.000630.03CVE-2023-4558

IOC - Indicator of Compromise (2)

These indicators of compromise highlight associated network ressources which are known to be part of research and attack activities.

IDIP addressHostnameActorCampaignsIdentifiedTypeConfidence
146.148.235.114GlobeImposter03/18/2024verifiedHigh
2XXX.XX.XXX.Xxx-x-xxx-xx-xxx.xxx-x.xxxxxxx.xxXxxxxxxxxxxxx03/18/2024verifiedHigh

TTP - Tactics, Techniques, Procedures (4)

Tactics, techniques, and procedures summarize the suspected MITRE ATT&CK techniques used. This data is unique as it uses our predictive model for actor profiling.

IDTechniqueClassVulnerabilitiesAccess VectorTypeConfidence
1T1059CAPEC-242CWE-94Argument InjectionpredictiveHigh
2TXXXXCAPEC-19CWE-XXXXxxxxxxxx Xxxx Xxxxxxxxxxx XxxxxxxxxxpredictiveHigh
3TXXXX.XXXCAPEC-16CWE-XXXXxxx-xxxxx XxxxxxxxxxxpredictiveHigh
4TXXXXCAPEC-108CWE-XXXxx XxxxxxxxxpredictiveHigh

IOA - Indicator of Attack (23)

These indicators of attack list the potential fragments used for technical activities like reconnaissance, exploitation, privilege escalation, and exfiltration. This data is unique as it uses our predictive model for actor profiling.

IDClassIndicatorTypeConfidence
1File/admin_route/inc_service_credits.phppredictiveHigh
2File/application/index/controller/Screen.phppredictiveHigh
3File/cgi-bin/cstecgi.cgipredictiveHigh
4File/loginpredictiveLow
5Filexxxxxxx.xxxxx.xxxpredictiveHigh
6Filexxx/xxxx/xxxxxx_xxxxxxxx_xxxxxx_xxxxxx.xxxpredictiveHigh
7Filexxxxxxx/xx/xxxxxxx/xx_xxxx/xxxxxx.xxxpredictiveHigh
8Filexxxxx.xxxpredictiveMedium
9Filexxxxxxx.xxxpredictiveMedium
10Filexxxxxxxx_xxxx_xxxxxxx_xxxxxx.xxxpredictiveHigh
11Filexxxxx_xxxx.xxxpredictiveHigh
12Filexxxxx_xxxx.xxxpredictiveHigh
13Argumentxxxxxxx[x][xxxx]predictiveHigh
14ArgumentxxxxxxxxpredictiveMedium
15Argumentxxxxxx_xxpredictiveMedium
16ArgumentxxxxxxxpredictiveLow
17ArgumentxxxxxxxpredictiveLow
18ArgumentxxpredictiveLow
19Argumentxxxx_xxxxpredictiveMedium
20ArgumentxxxxpredictiveLow
21Argumentxxxxxxx_xxxxpredictiveMedium
22ArgumentxxxpredictiveLow
23Argumentxxxxxxxx/xxxxxxxxpredictiveHigh

References (3)

The following list contains external sources which discuss the actor and the associated activities:

Do you want to use VulDB in your project?

Use the official API to access entries easily!