CVE-2024-51324 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
CVE-2024-51324 is a vulnerability tracked across 1 threat cluster and 3 intelligence report mentions on ThreatCluster. First observed December 9, 2025; most recent activity December 11, 2025.
DeadLock ransomware is being deployed by a financially motivated threat actor using a new loader that utilizes the Bring Your Own Vulnerable Driver (BYOVD) technique. This method disables endpoint detection and response…
CVE-2024-51324 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
The most recent intelligence report mentioning CVE-2024-51324 on ThreatCluster is dated December 11, 2025. Activity was first observed December 9, 2025, giving a tracked span from then to December 11, 2025.
Across ThreatCluster reporting, CVE-2024-51324 most frequently co-occurs with Ransomware, DeadLock, Bring Your Own Vulnerable Driver, T1021.001 - Remote Desktop Protocol, T1055.012 - Process Hollowing, among 12 tracked related entities.
The most significant recent cluster is “DeadLock Ransomware Employs BYOVD Technique to Bypass Security” (3 articles · Updated December 10, 2025). CVE-2024-51324 appears across 1 threat cluster in total, listed above with sources.
CVE-2024-51324 appears in 3 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.