{
  "95a9db3a-837d-5ad0-8f58-eeaae1172b07": {
    "info": "Botnet Analysis: A Product-Grade Threat for the AI Service Era",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "2300d202-240c-5b80-a624-c5d5b5f26e6d": {
    "info": "Contagious Interview malware in SVG images: DPRK campaign",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "62427d38-e978-5e58-a391-5e771db37229": {
    "info": "Behind the Refund: From GST Phishing to Remcos RAT Through a Multi-Stage .NET Infection Chain",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "0faf20ca-2a95-5610-b29f-29cfe928d1aa": {
    "info": "ClickFix Campaign Generated Via AI Delivers SmartRAT",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "580ae451-af2c-52f7-a858-5028f7d3668f": {
    "info": "ACR Stealer: Two observed intrusion chains amid increased threat activity",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "9c2b3b93-a01e-5a1c-954d-817e0a7c364a": {
    "info": "Novel Starland RAT and bespoke WLDR C2 implant deployed in financially motivated campaign",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "40f3ad11-7aa8-5516-a077-caf9dd921e4f": {
    "info": "The Patch Wars have begun",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "a8e20c52-295e-5987-9b7a-a68bb54020cf": {
    "info": "GoSerpent backdoor attacks in Southeast Asia",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "898e531d-5f73-55a9-b109-8b263b935592": {
    "info": "HelloNet campaign: a threat via the ViPNet update system",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "3fa74463-fc93-54ab-8b51-fc6ca7e0b5fa": {
    "info": "The TTF Trap: A Global Campaign of a Low-Detection Lua Loader",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "cb8cbea9-aaf1-577c-936c-da2a98db9f9a": {
    "info": "Spirals: New Stealthy Ransomware Deployed Against Asian IT Company",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "3cb74393-d113-5d09-bd3b-86d739716633": {
    "info": "ClickLock Stealer: Paste Once, Lose Everything",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-17",
    "threat_level_id": "4"
  },
  "4bc25803-09ef-5df3-b41c-7f92e820b62b": {
    "info": "Attackers Weaponize Microsoft Teams Relays to Stay Hidden",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "470dcd59-9ce0-5d76-8c51-6d206fdadcdd": {
    "info": "Potemkin Loader & RMMProject The Anatomy of a ClickFix Attack",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "66dc4ca5-a977-5765-a2ba-fa715770828d": {
    "info": "Gamers beware: malicious wallpapers on Steam found stealing accounts",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "44aa35ba-e882-5a45-8f8b-093846d16652": {
    "info": "Unpacking the AsyncAPI npm supply chain compromise and import-time payload delivery",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "c1bf3097-1d91-5d3f-a219-91ae6c542a4e": {
    "info": "TELEPUZ: a modular MaaS malware spreading via CLICKFIX-VIDAR chains",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "40650fb8-6483-5244-8f3a-2f454bd8169f": {
    "info": "​​Kratos PhaaS Targets US and EU: How to Reduce Microsoft 365 Account Takeover Risk​",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "c19e9051-ccf3-5971-b0f4-87d04033092f": {
    "info": "Introducing CylindricalCanine: The GoldenEyeDog subgroup responsible for the April DigiCert incident",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "129d3dc4-d193-5119-9213-d249eaa01ab9": {
    "info": "Investigation of email-based attack delivering MediaFire ZIP file with execution chain analysis",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "c886e046-912e-5ac2-84e7-f45725df45d7": {
    "info": "WebAssembly Malware Found in Trojanized Open VSX Extensions",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-16",
    "threat_level_id": "4"
  },
  "0ac6c020-93f4-50bd-9955-51047bdb64e0": {
    "info": "Fake crypto scams try to piggyback off SpaceX IPO",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "c7b432dc-95f8-52ac-b5ce-ed2eaf194a31": {
    "info": "Operation Fake KickOff: Attackers Abuse Recruiters and SaaS to Harvest Work Credentials",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "6f94e6bb-9566-51cc-ac27-0f5fadb4d5c9": {
    "info": "11 Malicious NuGet Tools Pose as Game Cheats to Drop a Windows Host-Surveillance Payload",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "b0f237e5-6209-5ba2-89a1-6418677f4c0c": {
    "info": "Shared Claude Chats Meet ClickFix",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "0f7f2025-0e58-565a-bcce-5bf2d27b2ff2": {
    "info": "June 2026 Infostealer Trend Report",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "18c856b4-cbc0-51a3-b188-43f78fe7a8f4": {
    "info": "OkoBot framework infection chain",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "91fed72a-7e91-548b-94bb-3e2208730119": {
    "info": "Daxin Returns: Stealthy Malware Resurfaces in Taiwan Alongside a New Backdoor",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "a0c646fa-e70f-51e9-a5cc-fdaaae677849": {
    "info": "Public and Private Medical Community Targeted by Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "bf0ec041-aaa1-5b67-bd52-13acf2daf5ec": {
    "info": "Inside an IoT Botnet Framework With LLM-Assisted Development",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "81b0fd3d-d14e-5e97-80b7-96fd7c18cd19": {
    "info": "Miasma Worm Returns to npm",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "9c60c6cf-f43f-5c34-8263-0e0c9c61e859": {
    "info": "Six Minutes to Compromise: How 'Patriot Bait' Actor Used AI to Build and Deploy a C&C Botnet",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "6da8e17c-c01c-5c64-9307-4fb4944ea320": {
    "info": "Threat Spotlight: The Jalisco Toolkit and AI-Powered Phishing Surge",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "c608cbac-9654-5a08-aa8b-68a5a88dc407": {
    "info": "Suspected Chinese Operators Use Claude Code and DeepSeek to Breach Government Systems Across Four Countries",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "7f5765d1-a446-5ba8-92e8-69d54ff4eb08": {
    "info": "LabubaRAT: A Rust Based Remote Access Tool Masquerading as NVIDIA Software",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "eae08846-4af8-5c97-8829-b0f4e1369b6b": {
    "info": "Analysis of APT37 NarwhalRAT Leveraging MS-Themed Phishing and Dead-drop C2",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "15505868-a892-5058-9523-582a3f189a58": {
    "info": "The Devil, Eight Million Emails, and a Whole Lot of Milk | Phishing Stager Exposed",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "73c85326-4a59-58d8-9c1d-1223f62fae27": {
    "info": "One Misconfigured Server, Three Active Campaigns: Full exposure of three AiTM Phishing Operators",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-15",
    "threat_level_id": "4"
  },
  "a8c91cb4-c91f-5298-8159-4a0c9f767547": {
    "info": "The Scam Will Go On: Beware of Fake Offers for Celine Dion Concert Tickets",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "5de33094-f04b-57a7-ba8e-e639de3a04b0": {
    "info": "Compromised npm Packages in the AsyncAPI Namespace Deliver Miasma Botnet Loader",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "3fe2dd10-0a0b-513c-aa23-5738190f4bef": {
    "info": "Supply Chain Compromise via GitHub Actions",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "a62ad707-1bd6-5f20-be61-cf81bc2ea7c0": {
    "info": "Lucide Proxy: Turning Student Web Proxies into DDoS Bots",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "b42ffe4b-f95e-5348-a817-584e541a4288": {
    "info": "Operation ShadowRecruit: A Recruitment-Themed Malware Campaign Leveraging ControlR and Google Sheets to Target Indian Job Seekers",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "d473fd4d-cf41-57af-890a-2eea9eb4974b": {
    "info": "ModHeader Malware: Inside the Chrome Spyware Google Removed",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "f4f3a041-a421-54f6-8d4a-a4811aa706e1": {
    "info": "CrashStealer: C++ macOS Infostealer Posing as Crash Reporter",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "a5ce2686-c941-5657-b0cc-8b8bddc24a5f": {
    "info": "Tomorrowland 2026, Belgium: People of Tomorrow, Targets of Today",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "6812620d-25b5-5753-bd09-1988f8e747a3": {
    "info": "Defending SaaS-based applications against ShinyHunters OAuth abuse",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-14",
    "threat_level_id": "4"
  },
  "cf27e9b3-b528-59c8-a85d-4d588898f13e": {
    "info": "Threat Actors Achieve Persistence After SQL Injection",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-07-13",
    "threat_level_id": "4"
  },
  "a7216e2a-d479-58af-84bb-27353bcd7165": {
    "info": "CVE-2009-1537: Microsoft DirectX NULL Byte Overwrite Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-05-20",
    "threat_level_id": "1"
  },
  "6125fdc5-a1ed-52a0-a027-b2756d215dd2": {
    "info": "ATT&CK profile: APT28",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-05-12",
    "threat_level_id": "4"
  },
  "97c193a3-e081-5b4f-bcbb-9e9751386ba5": {
    "info": "CVE-2025-49113: RoundCube Webmail Deserialization of Untrusted Data Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-02-20",
    "threat_level_id": "1"
  },
  "8b936c6c-ef66-520a-8a30-c5523a9c9cf4": {
    "info": "CVE-2025-31125: Vite Vitejs Improper Access Control Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-01-22",
    "threat_level_id": "1"
  },
  "84fb4bd8-1835-5a02-a70d-032a75447202": {
    "info": "CVE-2025-54313: Prettier eslint-config-prettier Embedded Malicious Code Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2026-01-22",
    "threat_level_id": "1"
  },
  "b0627315-f3eb-5c42-bacc-808931511e24": {
    "info": "CVE-2025-21042: Samsung Mobile Devices Out-of-Bounds Write Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357681",
    "date": "2025-11-10",
    "threat_level_id": "1"
  },
  "9ab5fd0e-ff86-543f-8cc4-9027782f2b4d": {
    "info": "CVE-2013-3918: Microsoft Windows Out-of-Bounds Write Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357682",
    "date": "2025-10-06",
    "threat_level_id": "1"
  },
  "f7aa9630-cb95-5d0c-bdf4-59de0ff90681": {
    "info": "CVE-2011-3402: Microsoft Windows Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357682",
    "date": "2025-10-06",
    "threat_level_id": "1"
  },
  "89757174-53b2-598d-bcba-b74ab5b38a95": {
    "info": "CVE-2016-10033: PHPMailer Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-07-07",
    "threat_level_id": "1"
  },
  "92d80491-50c9-54cf-b755-431e820e0e90": {
    "info": "CVE-2024-0769: D-Link DIR-859 Router Path Traversal Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-06-25",
    "threat_level_id": "1"
  },
  "10a34d96-c6d3-54fa-9d7d-8c16e31c6ace": {
    "info": "CVE-2024-42009: RoundCube Webmail Cross-Site Scripting Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-06-09",
    "threat_level_id": "1"
  },
  "78f9f524-4dc1-5c8f-807c-7bcb2c970140": {
    "info": "CVE-2024-56145: Craft CMS Code Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-06-02",
    "threat_level_id": "1"
  },
  "1caef780-0923-5cbe-a980-1d8fe1dffd3d": {
    "info": "CVE-2024-12987: DrayTek Vigor Routers OS Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-05-15",
    "threat_level_id": "1"
  },
  "25977de6-5085-5fd2-a415-4f7102860a2b": {
    "info": "CVE-2019-9875: Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-03-26",
    "threat_level_id": "1"
  },
  "3021f247-a5e1-5681-90e1-afa1d850113a": {
    "info": "CVE-2024-57968: Advantive VeraCore Unrestricted File Upload Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-03-10",
    "threat_level_id": "1"
  },
  "606ba078-ec43-5571-ac36-82a6f8f354bc": {
    "info": "CVE-2025-25181: Advantive VeraCore SQL Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-03-10",
    "threat_level_id": "1"
  },
  "a7fc17b4-4977-5f02-bc35-bba14056352d": {
    "info": "CVE-2022-23748: Dante Discovery Process Control Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2025-02-06",
    "threat_level_id": "1"
  },
  "892d5c89-f6b0-5f8f-8de7-38c55256f3a7": {
    "info": "ATT&CK profile: Sandworm Team",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-12-04",
    "threat_level_id": "4"
  },
  "c22b6690-1b67-5061-ac4f-3f4224b485b6": {
    "info": "CVE-2024-11680: ProjectSend Improper Authentication Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-12-03",
    "threat_level_id": "1"
  },
  "e3020dc7-29df-52ff-a22e-268984d2ea62": {
    "info": "CVE-2021-26086: Atlassian Jira Server and Data Center Path Traversal Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-11-12",
    "threat_level_id": "1"
  },
  "f712620a-803f-5831-8c09-ca450abe3b31": {
    "info": "CVE-2024-8956: PTZOptics PT30X-SDI/NDI Cameras Authentication Bypass Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-11-04",
    "threat_level_id": "1"
  },
  "ab6d1606-69a1-575b-aa8b-f615aa54064e": {
    "info": "CVE-2023-25280: D-Link DIR-820 Router OS Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-09-30",
    "threat_level_id": "1"
  },
  "4f41a77b-4a7d-5c3e-b0fb-adbc3a06c23e": {
    "info": "CVE-2024-7262: Kingsoft WPS Office Path Traversal Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-09-03",
    "threat_level_id": "1"
  },
  "94479669-0a1c-5a51-8a92-7422169ae953": {
    "info": "CVE-2024-4978: Justice AV Solutions (JAVS) Viewer Installer Embedded Malicious Code Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-05-29",
    "threat_level_id": "1"
  },
  "ddf597c7-a89f-566f-8bc7-1249d93663d9": {
    "info": "CVE-2021-40655: D-Link DIR-605 Router Information Disclosure Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-05-16",
    "threat_level_id": "1"
  },
  "820d34f0-4321-5e30-ba77-1ca6b88ae608": {
    "info": "CVE-2021-36380: Sunhillo SureLine OS Command Injection Vulnerablity",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-03-05",
    "threat_level_id": "1"
  },
  "cc67e3b0-7ddb-5f32-beeb-02db96a2c2b9": {
    "info": "CVE-2024-21338: Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-03-04",
    "threat_level_id": "1"
  },
  "549f553d-ecf9-5049-8496-1f789c8d6ede": {
    "info": "CVE-2016-20017: D-Link DSL-2750B Devices Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2024-01-08",
    "threat_level_id": "1"
  },
  "3c72c51c-b0e8-5318-aa68-36001e3bd445": {
    "info": "CVE-2023-49103: ownCloud graphapi Information Disclosure Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-11-30",
    "threat_level_id": "1"
  },
  "ec9cbfd0-e1e5-5dff-b5c0-00d49a86f51c": {
    "info": "CVE-2023-4911: GNU C Library Buffer Overflow Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-11-21",
    "threat_level_id": "1"
  },
  "bb39b777-c50e-5c85-b17c-21b63c602c3c": {
    "info": "CVE-2023-36846: Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-11-13",
    "threat_level_id": "1"
  },
  "ac6e1583-32a7-516f-bdac-9782c84a6c27": {
    "info": "CVE-2023-36847: Juniper Junos OS EX Series Missing Authentication for Critical Function Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-11-13",
    "threat_level_id": "1"
  },
  "37efd23c-9b7a-5d4b-817c-c08fceb058cb": {
    "info": "CVE-2023-4966: Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-10-18",
    "threat_level_id": "1"
  },
  "903f272b-9d7b-56f2-b729-53570658534e": {
    "info": "CVE-2018-14667: Red Hat JBoss RichFaces Framework Expression Language Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-09-28",
    "threat_level_id": "1"
  },
  "f883defa-16a1-5dc7-8437-831c4a9fc88e": {
    "info": "CVE-2017-18368: Zyxel P660HN-T1A Routers Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-08-07",
    "threat_level_id": "1"
  },
  "f408b302-10a2-520b-ab7c-ce3b7d9121fa": {
    "info": "CVE-2019-17621: D-Link DIR-859 Router Command Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-06-29",
    "threat_level_id": "1"
  },
  "b99cf3c9-d9a0-55ce-8161-7a421e0be16c": {
    "info": "CVE-2019-20500: D-Link DWL-2600AP Access Point Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-06-29",
    "threat_level_id": "1"
  },
  "63efc183-4ba8-589d-9921-54a28ae05822": {
    "info": "CVE-2015-2291: Intel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2023-02-10",
    "threat_level_id": "1"
  },
  "6e79a780-2846-5cea-a630-b2463b990007": {
    "info": "CVE-2013-2094: Linux Kernel Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-09-15",
    "threat_level_id": "1"
  },
  "bbe7394c-0a1e-55da-8573-eb444b1c31cb": {
    "info": "CVE-2022-26258: D-Link DIR-820L Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-09-08",
    "threat_level_id": "1"
  },
  "78283936-ab5e-5f1e-8f38-34d42513ecd0": {
    "info": "CVE-2011-1823: Android OS Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-09-08",
    "threat_level_id": "1"
  },
  "0239730c-9563-59fc-8480-ff1f559998a2": {
    "info": "CVE-2020-36193: PEAR Archive_Tar Improper Link Resolution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-08-25",
    "threat_level_id": "1"
  },
  "c605f6ec-a9c6-5021-be19-de250a2f1a8d": {
    "info": "CVE-2022-26925: Microsoft Windows LSA Spoofing Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-07-01",
    "threat_level_id": "1"
  },
  "1b1e429a-547d-575e-aade-10a31ddc04b5": {
    "info": "CVE-2022-26134: Atlassian Confluence Server and Data Center Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-06-02",
    "threat_level_id": "1"
  },
  "43da0b52-4f65-5744-b6c6-f463c9d51a93": {
    "info": "CVE-2015-2360: Microsoft Win32k Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-05-25",
    "threat_level_id": "1"
  },
  "35beb4eb-2d29-5d6d-9c4c-0f192440cf51": {
    "info": "CVE-2014-4077: Microsoft IME Japanese Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-05-25",
    "threat_level_id": "1"
  },
  "5b1e01be-0bfc-5129-b0a3-d4e15fc7ed7b": {
    "info": "CVE-2019-0880: Microsoft Windows Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-05-23",
    "threat_level_id": "1"
  },
  "5b3143d9-de5e-5d8d-9e60-df670796d688": {
    "info": "CVE-2019-11707: Mozilla Firefox and Thunderbird Type Confusion Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-05-23",
    "threat_level_id": "1"
  },
  "9aa7342f-b813-57cd-b67b-028f8c1af449": {
    "info": "CVE-2018-7841: Schneider Electric U.motion Builder SQL Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-04-15",
    "threat_level_id": "1"
  },
  "11eda1d6-46b0-524b-9501-c86f8ae7ef33": {
    "info": "CVE-2010-5330: Ubiquiti AirOS Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-04-15",
    "threat_level_id": "1"
  },
  "434544d0-7cf0-5045-962e-a08f90e4331c": {
    "info": "CVE-2021-27852: Checkbox Survey Deserialization of Untrusted Data Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-04-11",
    "threat_level_id": "1"
  },
  "cf77aee8-76b5-59f4-ab2b-3fe948efc3c9": {
    "info": "CVE-2017-11317: Telerik UI for ASP.NET AJAX Unrestricted File Upload Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-04-11",
    "threat_level_id": "1"
  },
  "80276aaa-f462-54eb-8ac0-62db55be81a1": {
    "info": "CVE-2021-31166: Microsoft HTTP Protocol Stack Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-04-06",
    "threat_level_id": "1"
  },
  "cdeff226-a5d1-5022-b21a-6038b3f6c4b3": {
    "info": "CVE-2017-0037: Microsoft Edge and Internet Explorer Type Confusion Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-28",
    "threat_level_id": "1"
  },
  "1be52f94-3559-586b-926d-46fef2190d1b": {
    "info": "CVE-2012-5076: Oracle Java SE Sandbox Bypass Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-28",
    "threat_level_id": "1"
  },
  "31931178-dcbb-59dc-ab26-15a000fc9c90": {
    "info": "CVE-2011-2005: Microsoft Ancillary Function Driver (afd.sys) Improper Input Validation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-28",
    "threat_level_id": "1"
  },
  "d177be3c-2f6d-541d-8b11-44154eaba208": {
    "info": "CVE-2020-9377: D-Link DIR-610 Devices Remote Command Execution",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-25",
    "threat_level_id": "1"
  },
  "abf1cef6-0c5a-5ee2-adbb-a57e3d313cf0": {
    "info": "CVE-2017-6334: NETGEAR DGN2200 Devices OS Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-25",
    "threat_level_id": "1"
  },
  "2aaa38e4-3c0b-53db-8fa9-e8f2ec67b1f2": {
    "info": "CVE-2014-6332: Microsoft Windows Object Linking & Embedding (OLE) Automation Array Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-25",
    "threat_level_id": "1"
  },
  "2b19a6f9-08fb-5ce4-8c9a-457d90873794": {
    "info": "CVE-2014-6287: Rejetto HTTP File Server (HFS) Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-25",
    "threat_level_id": "1"
  },
  "92ff92c3-c3b3-5ad4-b26b-3beebe15b26b": {
    "info": "CVE-2014-0130: Ruby on Rails Directory Traversal Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-25",
    "threat_level_id": "1"
  },
  "cd1c724e-05bb-5f58-abef-e075039f6a79": {
    "info": "CVE-2015-2387: Microsoft ATM Font Driver Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-03",
    "threat_level_id": "1"
  },
  "1b00f9de-2b4c-50ae-b6e0-03f7abc428fa": {
    "info": "CVE-2013-5065: Microsoft Windows Kernel Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-03",
    "threat_level_id": "1"
  },
  "34c2e68e-a928-5d45-b136-5047e7d95c78": {
    "info": "CVE-2013-0640: Adobe Reader and Acrobat Memory Corruption Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-03",
    "threat_level_id": "1"
  },
  "ec2bf799-3981-50a5-a71d-198814069af1": {
    "info": "CVE-2012-1856: Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-03",
    "threat_level_id": "1"
  },
  "6eefc58c-98cb-5905-829e-57a8e74aedeb": {
    "info": "CVE-2008-3431: Oracle VirtualBox Insufficient Input Validation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-03",
    "threat_level_id": "1"
  },
  "f82b8f64-583b-5d4a-af24-2d49f206e4d2": {
    "info": "CVE-2002-0367: Microsoft Windows Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-03-03",
    "threat_level_id": "1"
  },
  "224f4bea-9ce3-5f19-9226-44f7d96061c7": {
    "info": "CVE-2018-15982: Adobe Flash Player Use-After-Free Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-02-15",
    "threat_level_id": "1"
  },
  "25a4b39d-3db8-5a50-b65d-e96f10da808a": {
    "info": "CVE-2017-9841: PHPUnit Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-02-15",
    "threat_level_id": "1"
  },
  "cefe1742-6478-5968-84c7-17d2cd148929": {
    "info": "CVE-2015-1635: Microsoft HTTP.sys Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-02-10",
    "threat_level_id": "1"
  },
  "53dea8c4-2f5d-5767-80a4-def4fc3780e9": {
    "info": "CVE-2012-0391: Apache Struts 2 Improper Input Validation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-01-21",
    "threat_level_id": "1"
  },
  "6ee65426-6757-5218-bc31-f67eb5d91c1f": {
    "info": "CVE-2021-21315: System Information Library for Node.JS Command Injection",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2022-01-18",
    "threat_level_id": "1"
  },
  "6ad40c4a-c6d3-5ed4-8b39-557c0e60c53c": {
    "info": "CVE-2021-44228: Apache Log4j2 Remote Code Execution Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2021-12-10",
    "threat_level_id": "1"
  },
  "79ed89f0-8e69-55d5-96a1-9b89d39a7f68": {
    "info": "CVE-2021-27103: Accellion FTA Server-Side Request Forgery (SSRF) Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2021-11-03",
    "threat_level_id": "1"
  },
  "1d47bf76-2e33-5e5c-a7ef-5623d79f8860": {
    "info": "CVE-2019-15752: Docker Desktop Community Edition Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2021-11-03",
    "threat_level_id": "1"
  },
  "8981e429-a01b-55cc-a7f7-a241c3f726c5": {
    "info": "CVE-2021-38003: Google Chromium V8 Memory Corruption Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2021-11-03",
    "threat_level_id": "1"
  },
  "6cfafee1-6bfd-5e2d-acd6-44c8fbae8375": {
    "info": "CVE-2019-1215: Microsoft Windows Privilege Escalation Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357684",
    "date": "2021-11-03",
    "threat_level_id": "1"
  },
  "909838e3-4da5-5cde-99fd-911e2a407d1e": {
    "info": "CVE-2020-0601: Microsoft Windows CryptoAPI Spoofing Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357687",
    "date": "2021-11-03",
    "threat_level_id": "1"
  },
  "e8b48bc2-90f5-5b89-972a-8b04bce3c5f0": {
    "info": "CVE-2019-18935: Progress Telerik UI for ASP.NET AJAX Deserialization of Untrusted Data Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357687",
    "date": "2021-11-03",
    "threat_level_id": "1"
  },
  "688ec1a3-7fbe-5336-b62a-feb2eafa545f": {
    "info": "CVE-2020-10221: rConfig OS Command Injection Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357687",
    "date": "2021-11-03",
    "threat_level_id": "1"
  },
  "d8cf5595-7138-5457-8483-bd1c0245bf24": {
    "info": "CVE-2017-9248: Progress Telerik UI for ASP.NET AJAX and Sitefinity Cryptographic Weakness Vulnerability",
    "Orgc": {
      "id": "1",
      "name": "Sandworm Watch",
      "uuid": "481b8015-b84d-5fda-be70-c4cefa0dad89"
    },
    "analysis": "1",
    "timestamp": "1784357687",
    "date": "2021-11-03",
    "threat_level_id": "1"
  }
}
