APTTrail: CVE-2023-41991 indicators and references

Fecha
18 Jun 2026
Actor
cve-2023-41991
Tipo
Ioc
Pais
Unknown
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
cve-2023-41991Actor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a CVE-2023-41991. Aliases observados: CVE-2023-41991, CVE-2023-41992, CVE-2023-41993, Cytrox Predator. Conteo por tipo: domain: 127.

Key Points

  • https://blog.sekoia.io/the-predator-spyware-ecosystem-is-not-dead/
  • https://citizenlab.ca/2023/09/predator-in-the-wires-ahmed-eltantawy-targeted-with-predator-spyware-after-announcing-presidential-ambitions/
  • https://community.emergingthreats.net/t/ruleset-update-summary-2023-10-11-v10437/1028
  • https://github.com/SpyGuard/SpyGuard/commit/5d2c914d55089aa67fecd1ab065d085b4051fd4c
  • https://www.recordedfuture.com/research/predator-spyware-infrastructure-returns-following-exposure-sanctions

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a CVE-2023-41991. Aliases observados: CVE-2023-41991, CVE-2023-41992, CVE-2023-41993, Cytrox Predator. Conteo por tipo: domain: 127.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain1domainregistry.comAPTTrail
Domainalmal-news.comAPTTrail
Domainasistentcomercialonline.comAPTTrail
Domainbarbequebros.comAPTTrail
Domainbeinfo.netAPTTrail
Domainbestshowineu.comAPTTrail
Domainbetly.meAPTTrail
Domainblocoinformativo.comAPTTrail
Domainbni-madagascar.comAPTTrail
Domainboundbreeze.comAPTTrail
Domainbranchbreeze.comAPTTrail
Domainbuysalesblog.comAPTTrail
Domainc.betly.meAPTTrail
Domainc1tvapp.comAPTTrail
Domainc3p0solutions.comAPTTrail
Domaincabinet-salyk.kzAPTTrail
Domaincaddylane.comAPTTrail
Domaincanylane.comAPTTrail
Domainchat-support.supportAPTTrail
Domaincheesyarcade.comAPTTrail
Domaincibeg.onlineAPTTrail
Domainclockpatcher.comAPTTrail
Domaincolabfile.comAPTTrail
Domaincraftilly.comAPTTrail
Domaindespachosnegocios.comAPTTrail
Domaindollgoodies.comAPTTrail
Domaindrivemountain.comAPTTrail
Domaine-kgd.kzAPTTrail
Domaineclipsemonitor.comAPTTrail
Domaineppointment.ioAPTTrail

Referencias

Diamond Model

Adversary
cve-2023-41991
Ver perfil →
Victim
APTTrail: CVE-2023-41991 indicators and references
Capability
Ioc
Infrastructure
1domainregistry.com
almal-news.com
asistentcomercialonline.com
barbequebros.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 1domainregistry.com APTTrail VT OffSec SOCRadar
Domain almal-news.com APTTrail VT OffSec SOCRadar
Domain asistentcomercialonline.com APTTrail VT OffSec SOCRadar
Domain barbequebros.com APTTrail VT OffSec SOCRadar
Domain beinfo.net APTTrail VT OffSec SOCRadar
Domain bestshowineu.com APTTrail VT OffSec SOCRadar
Domain betly.me APTTrail VT OffSec SOCRadar
Domain blocoinformativo.com APTTrail VT OffSec SOCRadar
Domain bni-madagascar.com APTTrail VT OffSec SOCRadar
Domain boundbreeze.com APTTrail VT OffSec SOCRadar
Domain branchbreeze.com APTTrail VT OffSec SOCRadar
Domain buysalesblog.com APTTrail VT OffSec SOCRadar
Domain c.betly.me APTTrail VT OffSec SOCRadar
Domain c1tvapp.com APTTrail VT OffSec SOCRadar
Domain c3p0solutions.com APTTrail VT OffSec SOCRadar
Domain cabinet-salyk.kz APTTrail VT OffSec SOCRadar
Domain caddylane.com APTTrail VT OffSec SOCRadar
Domain canylane.com APTTrail VT OffSec SOCRadar
Domain chat-support.support APTTrail VT OffSec SOCRadar
Domain cheesyarcade.com APTTrail VT OffSec SOCRadar
Domain cibeg.online APTTrail VT OffSec SOCRadar
Domain clockpatcher.com APTTrail VT OffSec SOCRadar
Domain colabfile.com APTTrail VT OffSec SOCRadar
Domain craftilly.com APTTrail VT OffSec SOCRadar
Domain despachosnegocios.com APTTrail VT OffSec SOCRadar
Domain dollgoodies.com APTTrail VT OffSec SOCRadar
Domain drivemountain.com APTTrail VT OffSec SOCRadar
Domain e-kgd.kz APTTrail VT OffSec SOCRadar
Domain eclipsemonitor.com APTTrail VT OffSec SOCRadar
Domain eppointment.io APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor cve-2023-41991 en el blog → Ver cve-2023-41991 en IntelTracker → URL IntelTracker: blog.sekoia.io→ URL IntelTracker: citizenlab.ca→ URL IntelTracker: community.emergingthreats.net→ URL IntelTracker: github.com→ URL IntelTracker: www.recordedfuture.com→ URL IntelTracker: www.recordedfuture.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: blog.sekoia.io→ Fuente OSINT: citizenlab.ca→ Fuente OSINT: community.emergingthreats.net→ Fuente OSINT: github.com → Buscar cve-2023-41991 en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes