Tool
suo5
- First Reported
- Jul 17, 2026
- Latest Reported
- Jul 23, 2026
Reported Context (2)
- on AS132883 (TOPIDC) in Hong Kong. The directories contained exploit code for multiple CVEs, webshells, suo5 HTTP tunnels, custom scripts with hardcoded stolen credentials targeting mail infrastructure and Apache Unattended Hermes AI Agent Used in Targeting of Thailand Finance Ministry, Researchers Find
- The first embedded JAR file was the open-source HTTP proxy-forwarding tool Suo5. Volexity Details Zero-Day Exploitation of SonicWall SMA VPN Appliances
CVE (10)
Malware (5)
People (1)
Threat Actors (2)
MITRE ATT&CK (29)
Vendors (4)
Products (12)
Tools (12)
Industries (1)
Countries (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.