Report
Threat Intelligence Summary May 2023
The May 2023 Fidelis Threat Intelligence Summary reviews key security developments, including the FBI confirmation that BianLian shifted to extortion-only attacks after a decryptor was released, a new AndoryuBot DDoS botnet exploiting a critical Ruckus Admin RCE flaw (CVE-2023-25717), and Google’s rollout of dark web monitoring for U.S. Gmail users. It ranks top emerging vulnerabilities led by a critical Windows NFS RCE (CVE-2023-24941) and other high-impact Windows flaws (PGM, SSTP, LDAP, OLE, Win32k EoP, SharePoint), and reports May telemetry of 2,219 unique critical vulnerability exploitation attempts (nearly 30% more than April) plus more than 70,000 high-severity malware threats. The report also summarizes sector-focused malware pressure (including healthcare, technology-manufacturing
