Loading the current evidence view. Navigation and account controls remain available.
Indicator investigation
Loading the current evidence view. Navigation and account controls remain available.
Loading verdict, provenance, relationships and sightings.
Indicator
Type cve · source intel_report_ingest
Shared non-noise tags (narrow join).
tags: report:mandiant
tags: report:mandiant
tags: report:mandiant
tags: report:mandiant
tags: report:mandiant
tags: report:mandiant
tags: report:mandiant
tags: report:mandiant
Title/body text match only.
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
Full investigation canvas with neighbor expansion.
Exploitation of KnowledgeDeliver via ViewState Deserialization Vulnerability Written by: Takahiro Sugiyama, Peter Revelant, Mathew Potaczek Introduction In late 2025, Mandiant responded to a security incident involving a compromised web server running KnowledgeDeliver . Knowledg
From stored enrichment entities only.
Deduped connector weight from graph context.