Technologyglobal✓ verified · 95%
Netwrix Auditor Insecure Object Deserialization Vulnerability
- When
- · day precision
- Where
- Global (internet)
- Category
- cyber_exploit · ransomware
Netwrix Auditor User Activity Video Recording component contains an insecure objection deserialization vulnerability that allows an unauthenticated, remote attacker to execute code as the NT AUTHORITY\SYSTEM user. Successful exploitation requires that the attacker is able to reach port 9004/TCP, which is commonly blocked by standard enterprise firewalling.
Sources
- CISA ↗ · first seen 2023-07-11 00:00 UTC
Defaxon links out to the original reporting and never republishes article text.
Correlated events
Computed by the Defaxon correlation engine — linked by shared actors, co-location, and temporal proximity. Scored hypotheses, never causal claims.
No correlated events found in the current window. As more events arrive, connections form automatically.