Q3 2026 Vulnerability Trend Report
Summary of Vulnerability Trends for the Third Quarter of 2026 A total of 36,971 CVEs were disclosed in the third quarter of 2026, representing an increase of approximately 78.6% Compared to the second quarter. Among the vulnerabilities for which CVSS assessments were completed, approximately 12.7% Were rated “Critical” and approximately
Vulnerability Attack Case: Installation of a Web Shell and Execution of a Scanner by Exploiting a Telerik UI Vulnerability
The AhnLab SEcurity intelligence Center (ASEC) has identified two vulnerability attack cases that exploited a remote code execution vulnerability (CVE-2019-18935) targeting unpatched Telerik UI for ASP.NET AJAX servers. In the first incident, after exploiting the vulnerability, the attacker executed a reverse shell, attempted to perform privilege escalation, and installed a
Zip Slip, Path Traversal Vulnerability during File Decompression
Overview Path traversal or directory traversal vulnerabilities are security vulnerabilities that occur mainly due to improper validation of user inputs. Attackers can read, modify, or even create new files that are originally inaccessible or located in unintended paths using relative or absolute paths. Although these vulnerabilities have been known for
XLoader Info-stealer Distributed Using MS Equation Editor Vulnerability (CVE-2017-11882)
AhnLab Security Intelligence Center (ASEC) publishes the information of phishing emails to AhnLab TIP monthly under the title “Trends Report on Phishing Emails.” There are various keywords/topics disguised as phishing, and this blog will cover cases where emails disguised as emails for checking purchases and order confirmations are used to
CERT Report July 2024
01. Monthly Attack Trends Through Statistics Attack Type Statistics Attack type statistics lets you access statistical information on the Top 9 attack types that occurred in the previous month, including the progression of each attack in terms of increase and decrease, as well as attack progression by industry sector and
CERT Report June 2024
01. Monthly Attack Trends Through Statistics Attack Type Statistics Attack type statistics lets you access statistical information on the Top 9 attack types that occurred in the previous month, including the progression of each attack in terms of increase and decrease, as well as attack progression by industry sector and
CERT Report May 2024
01. MONTHLY ATTACK TRENDS THROUGH STATISTICS Attack Type Statistics Attack type statistics lets you access statistical information on the top 9 attack types that occurred in the previous month, including the progression of each attack in terms of increase and decrease, as well as attack progression by industry sector
CERT Report April 2024
01. MONTHLY ATTACK TRENDS THROUGH STATISTICS Attack Type Statistics Attack type statistics lets you access statistical information on the top nine attack types that occurred in the previous month, including the progression of each attack in terms of increase and decrease, as well as attack progression by industry
CERT Report March 2024
01. Monthly Attack TrendsThrough Statistics Attack Type Statistics Attack type statistics lets you access statistical information on the top nine attack types that occurred in the previous month, including the progression of each attack in terms of increase and decrease, as well as attack progression by industry sector
CERT Report February 2024
01. Monthly Attack Trends Through Statistics Attack Type Statistics In the attack type statistics, you can access statistical information on the top nine attack types that occurred in the previous month, including the progression of each attack in terms of increase and decrease, as well as the attack

