Resecurity vulnerabilities
In our reporting, Resecurity appears in the context of cybercrime group tracking and supply chain risk intelligence. Their recent research highlights INC Ransomware as the dominant actor exploiting flaws in SonicWall SMA 1000 appliances. They are also tracking the ExfilSquad group targeting cloud portals for data theft and the 'SANDCLOCK' supply-chain attack via LiteLLM, which affected multiple sectors. Defenders should pay close attention to INC Ransomware's extortion tactics and prioritize the security of edge access devices like SonicWall.
Azərbaycanca: Resecurity hesabatlarımızda əsasən kibercinayətkarlıq qrupları və tədarük zənciri riskləri ilə bağlı kəşfiyyat kontekstində görünür. Onların son araşdırmaları INC Ransomware-in SonicWall SMA 1000 cihazlarındakı boşluqlardan istifadə edərək dominant aktora çevrildiyini vurğulayır. Eyni zamanda, ExfilSquad kimi qrupların məlumat sızdırmaq üçün bulud portallarını hədəf alması və LiteLLM vasitəsilə həyata keçirilən 'SANDCLOCK' tədarük zənciri hücumunun geniş sektorlara təsiri izlənilir. Müdafiəçilər INC Ransomware-in təzyiq taktikalarına və xüsusilə SonicWall kənar giriş cihazlarının təhlükəsizliyinə diqqət yetirməlidir.
This hub is built from skopnix's own reporting on Resecurity: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.