𝕡𝕨𝕟𝕚𝕖[verified]@0day_ninjaDisclosure
CVE-2024-38063 is a zero-click remote code execution vulnerability due to an integer underflow in the Windows IPv6 kernel driver, enabling attackers to run code via specially crafted packets.
𝕡𝕨𝕟𝕚𝕖[verified]@0day_ninjaDisclosure
A Microsoft Windows IPv6 TCP/IP Remote Code Execution vulnerability (CVE-2024-38063) was publicly disclosed on August 22, 2024 via a Censys advisory link, detailing RCE but providing no PoC, exploit, or patch information.
truemorgan[verified]@_truemorganGeneral
A list of Microsoft Windows CVE identifiers is provided with no additional information.
Slade 🛡️ LLM Hacker[verified]@llm_redteamDisclosure
The tweet points out that CVE‑2024‑38063 involves an authentication bypass in proprietary routers, noting that black‑box scanners miss this flaw.
Aviatrix Threat Research Center[verified]@aviatrixtrcActive Exploitation
Multiple Chinese APT groups deployed the BlueMoon exploit kit, chaining CVE‑2024‑7971, CVE‑2024‑8198 and CVE‑2024‑38063 for browser compromise and Windows privilege escalation, demonstrating active exploitation and lateral movement within aerospace and defense networks.
VampireXRay@VampireXrayDisclosure
The Medium article title indicates a new CVE‑2024‑38063 related to an IPv6 kernel pool flaw and mentions a potential $100k bounty, but no technical or exploit details are provided within the given text.
nol@nol_techGeneral
The tweet expresses doubt about Microsoft's assessment of CVE‑2024‑38063 and says a proof‑of‑concept is needed to be convinced, offering no additional technical or exploit information.
Miranox@Miranox22General
The tweet comments on a critical vulnerability (CVE-2024-38063) but offers no technical details, PoC, or exploitation information.