Malware
LEMURLOOT
- First Reported
- Aug 18, 2026
- Latest Reported
- Aug 18, 2026
Reported Context (1)
- web shell "DEWMODE" after exploiting the SQL injection vulnerability CVE-2021-27101, and it deployed "LEMURLOOT" after exploiting CVE-2023-34362. Clop-linked Windchill Web Shell Steals Credentials and Maps Engineering Data
CVE (3)
Malware (2)
People (2)
Threat Actors (2)
MITRE ATT&CK (8)
Vendors (2)
Products (2)
Industries (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.