FortiRecon
FortiRecon is a digital risk protection (DRP) service that allows customers to gain visibility of their digital attack surface, receive targeted threat intelligence, and reduce organisational risk.
skharoliwal
Staff
Staff
Article Id 410831

 

FortiRecon Digital Risk Protection (DRP), a SaaS-based service, includes External Attack Surface Management, Brand Protection, and Adversary Centric Intelligence.

Adversary Centric Intelligence (ACI): leverages FortiGuard Threat Analysis to provide comprehensive coverage of dark web, open-source, and technical threat intelligence, including threat actor insights to enable organizations to respond proactively assess risks, respond faster to incidents, better understand their attackers, and guard assets.

The Vulnerability Intelligence Module under Adversary Centric Intelligence (ACI) provides a realistic view of the impact of the vulnerability based upon chatter and discussion of the same across various external sources such as Darkweb, social media, News / Blogs etc.

CVE ID CVE-2024-27956
CVE Title Improper Neutralization of Special Elements used in an SQL Command...
NVD Severity CRITICAL
FortiRecon Severity CRITICAL
FortiRecon Score 92/100
Epss Score 0.939
Exploited Yes
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) Yes (ShadowSilk)
Included in CISA KEV List No
Available working exploit(s) 1
Available working exploit(s)
Available POC exploit(s) 16
Available POC exploit(s)
Darknet Mention(s) 3 (xss)
Telegram Mention(s) 2 (Hunt3r Kill3rs | Охотники-убийцы, Keymous +)
FortiRecon Intelligence Reporting(s) 3 (OSINT), 1 (Technical Intelligence), 7 (FortiGuard Research)
Vendor Advisory:

 

CVE ID CVE-2018-7602
CVE Title Drupal Core Remote Code Execution Vulnerability
NVD Severity CRITICAL
FortiRecon Severity CRITICAL
FortiRecon Score 92/100
Epss Score 0.94189
Exploited Yes
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) Yes (ShadowSilk)
Included in CISA KEV List Yes
Available working exploit(s) 4
Available working exploit(s)
Available POC exploit(s) 8
Available POC exploit(s)
Darknet Mention(s) 2 (xss, 90sec)
Telegram Mention(s) 1 (The Archivists Domain)
FortiRecon Intelligence Reporting(s) 2 (OSINT), 1 (FortiGuard Research)
Vendor Advisory:

 

CVE ID CVE-2018-7600
CVE Title Drupal Core Remote Code Execution Vulnerability
NVD Severity CRITICAL
FortiRecon Severity CRITICAL
FortiRecon Score 92/100
Epss Score 0.9447
Exploited Yes
Exploited by Ransomware Group(s) No
Exploited by APT Group(s) Yes (Emennet Pasargad, ShadowSilk)
Included in CISA KEV List Yes
Available working exploit(s) 7
Available working exploit(s)
Available POC exploit(s) 44
Available POC exploit(s)
Darknet Mention(s) 9 (raidforums, xss, antichat, 90sec)
Telegram Mention(s) 2 (ANTICHAT Channel)
FortiRecon Intelligence Reporting(s) 1 (FortiGuard Research), 7 (OSINT), 5 (Technical Intelligence)
Vendor Advisory:

 

Contributors