FortiRecon
FortiRecon is a digital risk protection (DRP) service that allows customers to gain visibility of their digital attack surface, receive targeted threat intelligence, and reduce organisational risk.
bmali
Staff
Staff
Article Id 317079
FortiRecon Digital Risk Protection (DRP), a SaaS-based service, includes External Attack Surface Management, Brand Protection, and Adversary Centric Intelligence.

Adversary Centric Intelligence (ACI): leverages FortiGuard Threat Analysis to provide comprehensive coverage of dark web, open-source, and technical threat intelligence, including threat actor insights to enable organizations to respond proactively assess risks, respond faster to incidents, better understand their attackers, and guard assets.

The Vulnerability Intelligence Module under Adversary Centric Intelligence (ACI) provides a realistic view of the impact of the vulnerability based upon chatter and discussion of the same across various external sources such as Darkweb, social media, News / Blogs etc. 
CVE ID CVE-2014-100005
CVE Title D-Link DIR-600 Router Cross-Site Request Forgery (CSRF) Vulnerability
NVD Severity MEDIUM
FortiRecon Severity CRITICAL
FortiRecon Score 90/100
Exploited Yes
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) No
Included in CISA KEV List Yes
Available working exploit(s) 0
Available POC exploit(s) 0
Darknet Mention(s) 0
Telegram Mention(s) 0
FortiRecon Intelligence Reporting(s) 2 (OSINT)
Social Media Mention(s) 3

 

CVE ID CVE-2021-40655
CVE Title D-Link DIR-605 Router Information Disclosure Vulnerability
NVD Severity HIGH
FortiRecon Severity CRITICAL
FortiRecon Score 90/100
Exploited Yes
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) No
Included in CISA KEV List Yes
Available working exploit(s) 0
Available POC exploit(s) 0
Darknet Mention(s) 0
Telegram Mention(s) 0
FortiRecon Intelligence Reporting(s) 2 (OSINT)
Social Media Mention(s) 3

 

CVE ID CVE-2022-37055
CVE Title D-Link Go-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 are vulnerable to Buffer Overflow via cgibin, hnap_main,
NVD Severity CRITICAL
FortiRecon Severity LOW
FortiRecon Score 8/100
Exploited No
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) No
Included in CISA KEV List No
Available working exploit(s) 0
Available POC exploit(s) 0
Darknet Mention(s) 0
Telegram Mention(s) 0
FortiRecon Intelligence Reporting(s) 0
Social Media Mention(s) 1

 

CVE ID CVE-2024-3272
CVE Title D-Link Multiple NAS Devices Use of Hard-Coded Credentials Vulnerability
NVD Severity CRITICAL
FortiRecon Severity CRITICAL
FortiRecon Score 90/100
Exploited Yes
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) No
Included in CISA KEV List Yes
Available working exploit(s) 0
Available POC exploit(s) 2
Darknet Mention(s) 0
Telegram Mention(s) 0
FortiRecon Intelligence Reporting(s) 1 (OSINT)
Social Media Mention(s) 0

 

CVE ID CVE-2024-3273
CVE Title D-Link Multiple NAS Devices Command Injection Vulnerability
NVD Severity CRITICAL
FortiRecon Severity CRITICAL
FortiRecon Score 91/100
Exploited Yes
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) No
Included in CISA KEV List Yes
Available working exploit(s) 0
Available POC exploit(s) 8
Darknet Mention(s) 7 (ramp, probiv, exploit)
Telegram Mention(s) 2 (Proxy Bar, Freedom F0x)
FortiRecon Intelligence Reporting(s) 2 (OSINT)
Social Media Mention(s) 7
Contributors