TI Mindmap HUB
Threat Intelligence Report

An ActiveMQ vulnerability attack case that installs Sharpire (Kinsing) — ASEC

📅 November 4, 2025 📰 asec.ahnlab.com 🔍 1 CVE(s) referenced

Kinsing attackers are actively exploiting unpatched Apache ActiveMQ servers (CVE-2023-46604) to deploy a range of malware—including coin miners, backdoors, and advanced remote control tools like Sharpire—enabling both cryptocurrency theft and full system compromise.

vendor
CVE-2023-46604

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

🔐 Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

📊 Visual Mindmap
🎯 IOC Extraction
⚔️ MITRE ATT&CK TTPs
📦 STIX 2.1 Bundle