ReliaQuest vulnerabilities
ReliaQuest appears in our reporting as both a cybersecurity research provider and incident response authority. A key theme is their discovery of a cyber espionage campaign targeting the hospitality sector, where attackers compromise hotel Wi‑Fi gateways via DNS poisoning to redirect guests to fake Microsoft 365 login pages. Additionally, they report on shifts in the ransomware landscape (e.g., The Gentlemen overtaking Qilin) and a custom JSP web shell operation targeting PTC Windchill and FlexPLM servers. No specific CVEs are cited in the provided material, so defenders should focus on DNS security for public networks, mandatory MFA, and diligent monitoring of critical enterprise applications like PLM platforms.
Azərbaycanca: ReliaQuest son hesabatlarımızda həm kibertəhlükəsizlik tədqiqat təminatçısı, həm də insidentlərə cavab mütəxəssisi kimi görünür. Şirkət tərəfindən aşkarlanan əsas mövzu qonaqpərvərlik sektoruna qarşı genişlənən kibercasusluq kampaniyasıdır, burada hakerlər hotel Wi‑Fi şəbəkələrini zəhərləyərək (DNS poisoning) qonaqları saxta Microsoft 365 səhifələrinə yönləndirir. Bununla yanaşı, ReliaQuest fidyə proqramı mənzərəsində dəyişiklik (The Gentlemen qrupunun önə çıxması) və PTC Windchill serverlərinə qarşı xüsusi veb-şell (web shell) əməliyyatları barədə də xəbərdarlıq edir. Təqdim olunan məlumatlarda spesifik CVE identifikatoru olmadığı üçün müdafiəçilər xüsusilə ictimai şəbəkələrdə DNS təhlükəsizliyinə, çoxfaktorlu autentifikasiyaya (MFA) və PLM kimi kritik tətbiqlərin monitorinqinə diqqət yetirməlidir.
This hub is built from skopnix's own reporting on ReliaQuest: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.