RaqibCTI
Search the threat graph — actor, CVE, technique, victim…
⌘K
◇ SIGN IN
Knowledge
/
KEV Catalog
/
CVE-2023-46604
Corpus
+ Request intel
workspace
CVE
CVE-2023-46604
P1
⬤ KNOWN RANSOMWARE USE
Apache ActiveMQ Deserialization of Untrusted Data Vulnerability
Apache · ActiveMQ
Date added (CISA)
2023-11-02
Remediation due
2023-11-23
Known ransomware use
Yes
Remediation priority
P1 — known ransomware use · past CISA due date
Associated with
Related to
←
Lazarus Group (TraderTraitor cluster) / APT38 / BlueNoroff · SPECTRE
campaign
Correlated cluster
2026-09-16
←
BadIIS
campaign
Correlated cluster
2026-08-26
←
Lazarus Group (TraderTraitor cluster) / APT38 / BlueNoroff · ZshBucket
campaign
Correlated cluster
2026-08-26
Overview
ATT&CK
3
Related
Related
Nothing linked yet
No threat actor or pipeline report has been cross-referenced against this CVE yet. The associated-with rail above shows any asserted relationships.
Source:
NVD ↗
·
CISA KEV Catalog ↗
CVE-2023-46604: Apache ActiveMQ Deserialization of Untrusted Data Vulnerability · RaqibCTI