Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/bullwall/Ransomware-Containment

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

BullWall Ransomware Containment considers the number of files modified to trigger detection. An authenticated attacker could encrypt a single (possibly large) file without triggering detection if thresholds are configured to require multiple file changes. The number of files to trigger detection can be configured by the user. Versions 4.6.0.0, 4.6.0.6, 4.6.0.7, and 4.6.1.4 are affected. Other versions may also be affected.

Join the discussion

BullWall Ransomware Containment supports configurable file and directory exclusions such as '$RECYCLE.BIN' to balance monitoring scope and performance. Certain exclusion patterns could allow an authenticated attacker to rename directories in a way that avoids monitoring. Fixed in 4.6.1.14 and 5.0.0.42, which remove hardcoded exclusion behavior and exposes exclusion handling as configurable settings.

Join the discussion

CVE-2025-62000 is a high-severity vulnerability in BullWall Ransomware Containment versions 4.6.0.0 through 4.6.1.4 that affects a file inspection method relying on header bytes to detect encrypted files. An authenticated attacker can exploit this by encrypting files while preserving the first four bytes, thereby evading this specific detection method. Although other integrity-based detection mechanisms exist for common file extensions, this flaw represents a limitation in one detection approach rather than a full bypass. The vulnerability requires low privileges and no user interaction, impacting integrity and availability.

Join the discussion

Showing 1 to 3 of 3 results

Filters:Package: pkg:github/bullwall/Ransomware-Containment
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses