home.social

#sysaid — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #sysaid, aggregated by home.social.

  1. Critical vulnerabilities discovered in SysAid's on-premise IT support software

    💥 Vulnerability: XML External Entity (XXE) injections that can lead to RCE

    ⚠️ Impact: Retrieval of sensitive files, full admin access, and arbitrary code execution, risking data breaches and system compromises.

    🔍 CVEs: CVE-2025-2775, CVE-2025-2776, CVE-2025-2777, CVE-2025-2778

    🔧 Remediation: Update to SysAid version 24.4.60 b16

    #cybersecurity #SysAid #vulnerabilitymanagement

    thehackernews.com/2025/05/sysa

  2. Critical vulnerabilities discovered in SysAid's on-premise IT support software

    💥 Vulnerability: XML External Entity (XXE) injections that can lead to RCE

    ⚠️ Impact: Retrieval of sensitive files, full admin access, and arbitrary code execution, risking data breaches and system compromises.

    🔍 CVEs: CVE-2025-2775, CVE-2025-2776, CVE-2025-2777, CVE-2025-2778

    🔧 Remediation: Update to SysAid version 24.4.60 b16

    #cybersecurity #SysAid #vulnerabilitymanagement

    thehackernews.com/2025/05/sysa

  3. Critical vulnerabilities discoverd in SysAid's on-premise IT support software

    💥 Vulnerability: XML External Entity (XXE) injections that can lead to RCE

    ⚠️ Impact: Retrieval of sensitive files, full admin access, and arbitrary code execution, risking data breaches and system compromises.

    🔍 CVEs: CVE-2025-2775, CVE-2025-2776, CVE-2025-2777, CVE-2025-2778

    🔧 Remediation: Update to SysAid version 24.4.60 b16

    #cybersecurity #SysAid #vulnerabilitymanagement

    thehackernews.com/2025/05/sysa

  4. Critical vulnerabilities discovered in SysAid's on-premise IT support software

    💥 Vulnerability: XML External Entity (XXE) injections that can lead to RCE

    ⚠️ Impact: Retrieval of sensitive files, full admin access, and arbitrary code execution, risking data breaches and system compromises.

    🔍 CVEs: CVE-2025-2775, CVE-2025-2776, CVE-2025-2777, CVE-2025-2778

    🔧 Remediation: Update to SysAid version 24.4.60 b16

    #cybersecurity #SysAid #vulnerabilitymanagement

    thehackernews.com/2025/05/sysa

  5. #BSI WID-SEC-2025-0981: [NEU] [hoch] ##SysAid #Technologies #Ltd SysAid: Mehrere Schwachstellen ermöglichen Offenlegung von Informationen

    Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in SysAid Technologies Ltd SysAid ausnutzen, um Informationen offenzulegen.

    wid.cert-bund.de/portal/wid/se

  6. #BSI WID-SEC-2025-0981: [NEU] [hoch] ##SysAid #Technologies #Ltd SysAid: Mehrere Schwachstellen ermöglichen Offenlegung von Informationen

    Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in SysAid Technologies Ltd SysAid ausnutzen, um Informationen offenzulegen.

    wid.cert-bund.de/portal/wid/se

  7. SysAid Vulnerability actively exploited in-the-wild

    Researchers at CERT Yoroi, a team of security experts, have published an analysis of a series of zero-day cyber-attacks on SysAid Technologies.

    Pulse ID: 654ea9fc68d94f7736031bf3
    Pulse Link: otx.alienvault.com/pulse/654ea
    Pulse Author: AlienVault
    Created: 2023-11-10 22:08:59

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #OTX #OpenThreatExchange #InfoSec #bot #CyberSecurity #zero-day #Vulnerability #SysAid #AlienVault

  8. SysAid has patched a zero-day vulnerability that could allow attackers to exfiltrate data and launch ransomware.
    Microsoft and SysAid Find Clop Malware Vulnerability
  9. Details techniques & IoCs pour la vulnérabilité dans le logiciel de gestion On-prem SysAid CVE-2023-47246 dans ce récit de prise en charge d'incident de sécurité
    👇
    profero.io/posts/sysaidonpremv

    ------------
    if sophos 😱 🏃‍♂️ 💨
    👇
    foreach($s in tasklist) {
    if ($s -match '^(Sophos).*\.exe\s') {echo $s; $bp++;}
    }
    if ($bp) { echo "`nSTOP-PROCs FOUND! Exiting`n" }
    ------------

    #Cyberveille #SysAid

  10. Details techniques & IoCs pour la vulnérabilité dans le logiciel de gestion On-prem SysAid CVE-2023-47246 dans ce récit de prise en charge d'incident de sécurité
    👇
    profero.io/posts/sysaidonpremv

    ------------
    if sophos 😱 🏃‍♂️ 💨
    👇
    foreach($s in tasklist) {
    if ($s -match '^(Sophos).*\.exe\s') {echo $s; $bp++;}
    }
    if ($bp) { echo "`nSTOP-PROCs FOUND! Exiting`n" }
    ------------

    #Cyberveille #SysAid

  11. Details techniques & IoCs pour la vulnérabilité dans le logiciel de gestion On-prem SysAid CVE-2023-47246 dans ce récit de prise en charge d'incident de sécurité
    👇
    profero.io/posts/sysaidonpremv

    ------------
    if sophos 😱 🏃‍♂️ 💨
    👇
    foreach($s in tasklist) {
    if ($s -match '^(Sophos).*\.exe\s') {echo $s; $bp++;}
    }
    if ($bp) { echo "`nSTOP-PROCs FOUND! Exiting`n" }
    ------------

    #Cyberveille #SysAid

  12. The write up for our observations and a bit about the POCs the @huntress team got working for the #SysAid #0day used by #clop #cl0p

    Awesome work by @JohnHammond Matt Kiely and others

    #dfir

    huntress.com/blog/critical-vul

  13. The write up for our observations and a bit about the POCs the @huntress team got working for the #SysAid #0day used by #clop #cl0p

    Awesome work by @JohnHammond Matt Kiely and others

    #dfir

    huntress.com/blog/critical-vul

  14. The write up for our observations and a bit about the POCs the @huntress team got working for the #SysAid #0day used by #clop #cl0p

    Awesome work by @JohnHammond Matt Kiely and others

    #dfir

    huntress.com/blog/critical-vul

  15. The write up for our observations and a bit about the POCs the @huntress team got working for the #SysAid #0day used by #clop #cl0p

    Awesome work by @JohnHammond Matt Kiely and others

    #dfir

    huntress.com/blog/critical-vul

  16. The write up for our observations and a bit about the POCs the @huntress team got working for the #SysAid #0day used by #clop #cl0p

    Awesome work by @JohnHammond Matt Kiely and others

    #dfir

    huntress.com/blog/critical-vul