vendor:
XWorm Trojan
by:
TOUHAMI KASBAOUI
7.5
CVSS
HIGH
NULL pointer dereference
476
CWE
Product Name: XWorm Trojan
Affected Version From: 2.1
Affected Version To: 2.1
Patch Exists: YES
Related CWE:
CPE: a:xworm:xworm_trojan:2.1
Platforms Tested: Windows 10
2022
XWorm Trojan 2.1 – Null Pointer Derefernce DoS
The sophisticated XWorm Trojan is well exploited by EvilCoder, where they collect different features such as ransomware and keylogger TAs to make it more risky for victims. The Trojan assigned to victims suffers from a NULL pointer deference vulnerability, which could lead to a denial of service for the server builder of the threat actor by getting his IP address and port of command and control.
Mitigation:
Apply the latest security patches and updates to the system.