Untitled attachment
https://cyberplace.social/system/media_attachments/files/114/391/474/051/147/371/original/84046e44577faf33.jpeg
Exploitation was the primary entry method into orgs, although it declined slight YoY due to the rise of infostealers.
Three of the four most exploited vulns were zero days, all were in cybersecurity products (Palo-Alto, Ivanti Connect Secure, Ivanti Policy Secure and Fortinet). In most of the cases documented, it was ransomware groups running rings around security vendors, ie the security vendors were the cause of the victims woes due to defective products.
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.