Vault 7: Projects

This publication series is about specific projects related to the Vault 7 main publication.

SECRE
T//
NOFORN
Pique Analysis Report
20150814-258-S
yma
ntec-Black Vine
Ra
y
theon Blackbird Technolo
g
i
es,
Inc. 2 14 Au
g
ust 2015
Use or disclosure of data contained on this sheet is su
bje
ct to the restrictions on the title
page
of this document.
SECRE
T//
NOFORN
4.0 (U) Related Techniques
(S//NF) Generic RAT, Use-After-Free browser vulnerability.
5.0 (U) Configurable Parameters
(U) None.
6.0 (U) Exploitation Method and Vectors
(S//NF) The exploited vulnerabilities discussed are CVE-2012-4792 and CVE-2014-0322, both
UAF vulnerabilities in Microsoft Internet Explorer browser. The attack vectors discussed were
water holing and spear phishing.
7.0 (U) Caveats
(U) None.
8.0 (U) Risks
(S//NF) Not applicable as no PoCs are recommended.
9.0 (U) Recommendations
(S//NF) Due to lack of technical detail, no PoCs are recommended.

e-Highlighter

Click to send permalink to address bar, or right-click to copy permalink.

Un-highlight all Un-highlight selectionu Highlight selectionh