CVE-2017-9805 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.
CVE-2017-9805 is a vulnerability tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed November 7, 2025; most recent activity November 20, 2025.
The article discusses the fifth volume of AttackIQ’s Ransom Tales series, which simulates the tactics of ransomware families REvil, DarkSide, and BlackMatter. These emulations are designed to help organizations validate…
CVE-2017-9805 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.
The most recent intelligence report mentioning CVE-2017-9805 on ThreatCluster is dated November 20, 2025. Activity was first observed November 7, 2025, giving a tracked span from then to November 20, 2025.
Across ThreatCluster reporting, CVE-2017-9805 most frequently co-occurs with APT41, Ransomware, Apt41 Cyber-Espionage Campaign, CVE-2017-17562, CVE-2021-44228, among 12 tracked related entities.
The most significant recent cluster is “APT41 Cyber-Espionage Tactics Explored in Ransomware Emulations” (14 articles · Updated January 6, 2026). CVE-2017-9805 appears across 1 threat cluster in total, listed above with sources.
CVE-2017-9805 appears in 2 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.