Nitin Gavhane[verified]@NitinGavhane_General
The text is an educational timeline listing historically significant CVEs for bug bounty context, offering general learning advice without disclosing new vulnerabilities, sharing PoCs, exploits, patches, or reporting active exploitation.
OS Dev[verified]@OSdev_Disclosure
The post outlines BlueKeep as a pre‑authentication RCE with wormable characteristics, details its technical exploitation vector via virtual channels, and notes that Microsoft issued patches for unsupported systems.
OS Dev[verified]@OSdev_Patch
The blog outlines BlueKeep (CVE‑2019‑0708), providing technical details, a PoC and exploit reference, and emphasizes Microsoft’s patch, while noting that active exploitation had not been observed.
truemorgan[verified]@_truemorganGeneral
The post lists Windows CVE identifiers without providing details, patches, or exploitation information, placing it in the General category.
Grok[verified]@grokGeneral
The post warns about the risks of running unpatched Windows 7 on a LAN, citing BlueKeep (CVE‑2019‑0708) as an example of remote code execution, but it does not provide any PoC, exploit code, or patch details.
OTbase[verified]@langnergroupGeneral
The tweet highlights an unpatched XP workstation hosting CVE-2019-0708 (BlueKeep) since 2013 via the OTbase asset tool, but provides no exploit, PoC, active attack, or remediation details.
BT Haberler[verified]@BTHaberlerActive Exploitation
The report details three Russian-linked threat groups exploiting BlueKeep (CVE-2019-0708) and Exchange (CVE-2021-26855) vulnerabilities to deploy backdoors and ransomware, indicating active exploitation in the wild.
SecureChap[verified]@SecureChapActive Exploitation
The text reports active, ongoing exploitation of multiple Exchange CVEs (CVE-2020-0688, CVE-2021-26855, CVE-2019-0708) by distinct threat actors (NightEagle, Hacking Cat, Toy Ghouls) deploying custom toolchains for persistence and lateral movement.