SprySOCKS
Essential information
- Confidence
- 100/100
- Is family
- No
- Published
- 20/12/2025 19:40
- Modified
- 21/12/2025 01:12
- Revoked
- No
- Author / Source
- AlienVault
- Related entities
- 6 attack patterns (mitre), 4 sectors, 6 indicators, 9 vulnerabilities (cve)
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators, intrusion sets and other entities linked to this malware.
Attack patterns (MITRE) (6)
Sectors (4)
-
Government targets
-
Telecommunications targets
-
Ministries of foreign affairs targets
-
Technology targets
Indicators (6)
-
2e6veme8xs.bmssystemg188.usindicatesstix 100/100 Revoked· Valid until 01/01/2025 · Source: AlienVault -
stix 100/100 Revoked· Valid until 22/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 22/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 22/12/2024 · Source: AlienVault
-
stix 100/100 Revoked· Valid until 22/12/2024 · Source: AlienVault
Vulnerabilities (CVE) (9)
Fortinet FortiOS, FortiProxy, and FortiSwitchManager contain an authentication bypass vulnerability that could allow an unauthenticated attacker to perform operations on the administrative …
- Attack vector
- Network
- Published
- 11/10/2022
- Modified
- 14/01/2026
GitHub Community and Enterprise Editions that utilize the ability to upload images through GitLab Workhorse are vulnerable to remote code execution. Workhorse …
- Published
- 03/11/2021
- Modified
- 20/12/2025
Microsoft Exchange Server contains an unspecified vulnerability that allows for privilege escalation.
- Published
- 03/11/2021
- Modified
- 20/12/2025
Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution.
- Published
- 03/11/2021
- Modified
- 29/05/2026
A external control of file name or path in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.7, 8.8.0 through 8.8.11, …
- Attack vector
- NETWORK
- Published
- 16/02/2023
- Modified
- 21/12/2025
Synacor Zimbra Collaboration Suite (ZCS) contains a server-side request forgery (SSRF) vulnerability via the ProxyServlet component.
- Published
- 07/07/2025
- Modified
- 21/12/2025
Microsoft Exchange Server contains an unspecified vulnerability that allows for security feature bypass.
- Published
- 03/11/2021
- Modified
- 20/12/2025
Progress Telerik UI for ASP.NET AJAX contains a deserialization of untrusted data vulnerability through RadAsyncUpload which leads to code execution on the …
- Published
- 03/11/2021
- Modified
- 20/12/2025
Synacor Zimbra Collaboration Suite (ZCS) contains an improper restriction of XML external entity (XXE) vulnerability in the mailboxd component.
- Published
- 10/01/2022
- Modified
- 21/12/2025