Cybersecurity and Infrastructure Security Agency (CISA) published a list of 2021’s top 15 most exploited software vulnerabilities

Cybersecurity and Infrastructure Security Agency (CISA) published the list of 2021’s top 15 most exploited software vulnerabilities

This joint Cybersecurity Advisory (CSA) was coauthored by cybersecurity agencies of the United States, Australia, Canada, New Zealand, and the United Kingdom: the Cybersecurity and Infrastructure Security Agency (CISA), National Security Agency (NSA), Federal Bureau of Investigation (FBI), Australian Cyber Security Centre (ACSC), Canadian Centre for Cyber Security (CCCS), New Zealand National Cyber Security Centre (NZ NCSC), and United Kingdom’s National Cyber Security Centre (NCSC-UK

“Globally, in 2021, malicious cyber actors targeted internet-facing systems, such as email servers and virtual private network (VPN) servers, with exploits of newly disclosed vulnerabilities. For most of the top exploited vulnerabilities, researchers or other actors released proof of concept (POC) code within two weeks of the vulnerability’s disclosure, likely facilitating exploitation by a broader range of malicious actors.” reads the advisory published by CISA. “To a lesser extent, malicious cyber actors continued to exploit publicly known, dated software vulnerabilities—some of which were also routinely exploited in 2020

Below is the list published by the government agency:

top 15 most exploited software vulnerabilities

The list includes CVE-2021-21972 affecting VMware vSphere ClientCVE-2021-26084 in Atlassian ConfluenceCVE-2021-40539 in Zoho ManageEngine AD SelfService PlusCVE-2018-13379 in Fortinet FortiOS and FortiProxyCVE-2019-11510 in Pulse Secure Pulse Connect Secure CVE-2019-11510), Log4ShellProxyLogon ProxyShell, and ZeroLogon.

The cybersecurity agency also shared a second table containing routinely exploited by threat cyber actors in 2021.

top 15 most exploited software vulnerabilities 2

[출처 : SecurityAffairs / 4.28.]