Researchers from threat intelligence firm Cyble uncovered a malware campaign targeting the Information Security community. The experts discovered a post where a researcher shared fake Proof of Concept (PoC) exploit code for an RPC Runtime Library Remote Code Execution flaw (CVE-2022-26809 CVSS 9.8). The malware, disguised as the fake PoC code, was available on GitHub. “Upon further investigation, we discovered that this is malware disguised as an Exploit. Similarly, we found a malicious sample that appears to be a fake PoC of CVE-2022-24500.” reads the post published by Cyble. “Both malicious samples were available on GitHub. Interestingly, both repositories belong to the same profile, indicating the possibility that the Threat Actor (TA) might be hosting a malware campaign targeting Infosec Community.”
12 Essentials for a Successful SOC Partnership
As cyber threats continue to impact businesses of all sizes, the need for round-the-clock security