2021-03-03 16:09:26 +01:00
[
{
"id" : 344161221 ,
"name" : "exchange-0days-202103" ,
"full_name" : "sgnls\/exchange-0days-202103" ,
"owner" : {
"login" : "sgnls" ,
"id" : 11134228 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/11134228?v=4" ,
"html_url" : "https:\/\/github.com\/sgnls"
} ,
"html_url" : "https:\/\/github.com\/sgnls\/exchange-0days-202103" ,
"description" : "IoC determination for exploitation of CVE-2021-26855, CVE-2021-26857, CVE-2021-26858 and CVE-2021-27065." ,
"fork" : false ,
"created_at" : "2021-03-03T14:50:16Z" ,
2021-03-05 04:09:17 +01:00
"updated_at" : "2021-03-04T22:23:19Z" ,
2021-03-04 16:10:58 +01:00
"pushed_at" : "2021-03-04T14:59:56Z" ,
2021-03-05 04:09:17 +01:00
"stargazers_count" : 2 ,
"watchers_count" : 2 ,
"forks_count" : 1 ,
"forks" : 1 ,
"watchers" : 2 ,
2021-03-03 22:09:45 +01:00
"score" : 0
} ,
{
"id" : 344210374 ,
"name" : "HAFNIUM-IOC" ,
"full_name" : "soteria-security\/HAFNIUM-IOC" ,
"owner" : {
"login" : "soteria-security" ,
"id" : 49722282 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/49722282?v=4" ,
"html_url" : "https:\/\/github.com\/soteria-security"
} ,
"html_url" : "https:\/\/github.com\/soteria-security\/HAFNIUM-IOC" ,
"description" : "A PowerShell script to identify indicators of exploitation of CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-26865" ,
"fork" : false ,
"created_at" : "2021-03-03T17:36:18Z" ,
2021-03-05 22:10:47 +01:00
"updated_at" : "2021-03-05T17:09:03Z" ,
"pushed_at" : "2021-03-05T17:09:01Z" ,
"stargazers_count" : 5 ,
"watchers_count" : 5 ,
2021-03-04 22:10:10 +01:00
"forks_count" : 0 ,
"forks" : 0 ,
2021-03-05 22:10:47 +01:00
"watchers" : 5 ,
2021-03-05 16:09:25 +01:00
"score" : 0
} ,
{
"id" : 344742582 ,
"name" : "exchange_webshell_detection" ,
"full_name" : "cert-lv\/exchange_webshell_detection" ,
"owner" : {
"login" : "cert-lv" ,
"id" : 22764485 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/22764485?v=4" ,
"html_url" : "https:\/\/github.com\/cert-lv"
} ,
"html_url" : "https:\/\/github.com\/cert-lv\/exchange_webshell_detection" ,
2021-03-05 22:10:47 +01:00
"description" : "Detect webshells dropped on Microsoft Exchange servers exploited through \"proxylogon\" group of vulnerabilites (CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065)" ,
2021-03-05 16:09:25 +01:00
"fork" : false ,
"created_at" : "2021-03-05T08:22:07Z" ,
2021-03-06 10:10:48 +01:00
"updated_at" : "2021-03-06T04:41:41Z" ,
"pushed_at" : "2021-03-06T04:41:39Z" ,
"stargazers_count" : 7 ,
"watchers_count" : 7 ,
2021-03-05 22:10:47 +01:00
"forks_count" : 3 ,
"forks" : 3 ,
2021-03-06 10:10:48 +01:00
"watchers" : 7 ,
2021-03-03 16:09:26 +01:00
"score" : 0
}
]