BushidoUK RVM Profile: PioneerKitten

Fecha
18 Jun 2026
Actor
pioneerkitten
Tipo
Threat-actor
Pais
United Kingdom
Sector
-
Confianza
high
55
Prioridad analitica
Media

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

1IOCs
0TTPs
pioneerkittenActor
United KingdomPais
Executive Summary
Perfil del grupo ransomware segun BushidoUK Ransomware Vulnerability Matrix. Incluye vulnerabilidades conocidas, herramientas y TTPs asociadas.

Key Points

  • Source: BushidoUK RVM GroupProfiles
  • BushidoUK RVM Repository

Group Profile: PioneerKitten

Perfil del grupo ransomware segun BushidoUK Ransomware Vulnerability Matrix. Incluye vulnerabilidades conocidas, herramientas y TTPs asociadas.

Pioneer Kitten's Exploited Vulnerabilities

> [!NOTE]

> This is the list of vulnerabilities that have been observed during intrusions by Pioneer Kitten (aka Br0k3r, xplfinder, Fox Kitten, UNC757, Parisite, RUBIDIUM, and Lemon Sandstorm), the initial access broker (IAB) that has helped ransomware deployment, such as NoEscape, RansomHouse, and BlackCat as well as Pay2Key

Citrix

| Product | CVE(s) | Ransomware Group(s) | Source(s) |

|---|---|---|---|

| NetScaler ADC & Gateway | CVE-2023-3519 | Pioneer Kitten+ | cisa.gov |

| NetScaler ADC & Gateway & SD-WAN | CVE-2019-19781 | Pioneer Kitten+ | cisa.gov |

Pulse Secure / Ivanti

| Product | CVE(s) | Ransomware Group(s) | Source(s) |

|---|---|---|---|

| Pulse Connect Secure | CVE-2024-21887 | Pioneer Kitten+ | cisa.gov |

| Pulse Connect Secure & Pulse Policy Secure | CVE-2019-11539 | Pioneer Kitten+ | cisa.gov |

| Pulse Connect Secure | CVE-2019-11510 | Pioneer Kitten+ | cisa.gov |

F5

| Product | CVE(s) | Ransomware Group(s) | Source(s) |

|---|---|---|---|

| BIG-IP | CVE-2022-1388 | Pioneer Kitten+ | cisa.gov |

Palo Alto Networks

| Product | CVE(s) | Ransomware Group(s) | Source(s) |

|---|---|---|---|

| PAN-OS Firewall | CVE-2024-3400 | Pioneer Kitten+ | cisa.gov |

Check Point

| Product | CVE(s) | Ransomware Group(s) | Source(s) |

|---|---|---|---|

| Security Gateway | CVE-2024-24919 | Pioneer Kitten+ | cisa.gov |

---

#### Sources

| Date Published | Report |

|---|---|

| 28 Aug 2024 | https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-241a |

| 15 Sep 2020 | https://www.cisa.gov/news-events/cybersecurity-advisories/aa20-259a |

Referencias

Diamond Model

Adversary
pioneerkitten
Ver perfil →
Victim
BushidoUK RVM Profile: PioneerKitten
United Kingdom
Capability
Threat-actor
Infrastructure
www.cisa.gov

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain www.cisa.gov Extraido del contenido VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor pioneerkitten en el blog → Ver pioneerkitten en IntelTracker → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com → Buscar pioneerkitten en APTTrail → Repositorio APTTrail → Mas incidentes en United Kingdom → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes