Exploit attempts peaked between June 29 and July 6, when researchers said they saw “several thousands on some days.”
More details have emerged about attacks leveraging the Microsoft flaw that was disclosed and patched last week.
The flaw (CVE-2024-24919) could enable attackers to read certain information on Gateways if they are connected to the Internet and enabled with Remote Access VPN or Mobile Access.
A threat actor has been observed exploiting various previously disclosed flaws to gain access to various U.S. governments and research organizations.
Threat actors exploited a critical-severity VMware flaw for almost two years before patches were released in October.