---
title: Most dangerous Cyberattacks of the last 12 months
description: Identifying the top cyberattacks of 2024 and their links to CVEs, highlighting the critical need for timely patching and proactive security measures.
image: https://codenotary.com/hubfs/cyberattacks.png
---

**$ protect --distro linux --machines 25 --free**

[Start now](https://apps.codenotary.com/linux)

[![cn-logo-black-nobg](https://codenotary.com/hubfs/cn-logo-black-nobg.svg)](https://codenotary.com/)

- Product
  
  #### [![AgentMon Start](https://codenotary.com/hubfs/AgentMon%20Start.svg) **AgentMon Start** Organization-wide AI agent spend, security and device fleet TRY NOW →](https://apps.codenotary.com/agentmon-start)
  
  #### [![AgentMon for Enterprise](https://codenotary.com/hubfs/AgentMon%20for%20Enterprise.svg) **AgentMon** Currently monitors more \> 7 million agent interactions/day. TRY NOW →](https://codenotary.com/agentmon)
  
  #### [![AgentX](https://codenotary.com/hubfs/AgentX.svg) **AgentX** Agentic network control middleware. TRY NOW →](https://codenotary.com/agent-network-control)
  
  #### [![Autonomous Security](https://codenotary.com/hubfs/Autonomous%20Security.svg) **Autonomous Security** AI Agents keep your servers secure. TRY NOW →](https://codenotary.com/trust)
- Use Cases
  
  #### [**AI Agent Risk Monitoring** Continuous oversight of autonomous agents across every environment.](https://codenotary.com/use-cases#risk)
  
  #### [**Autonomous Security Operations** Self-healing defenses that detect, contain, and remediate threats.](https://codenotary.com/use-cases#agentops)
  
  #### [**AI Coding Governance & Performance Monitoring** AI-generated code reviewed, tracked, and held to quality standards.](https://codenotary.com/use-cases#performance)
  
  #### [**AI Tool Cost & Usage Optimization** Spend and consumption optimized across every AI service in use.](https://codenotary.com/use-cases#cost)
  
  #### [**AI Tool Security & Policy Enforcement** Approved AI usage enforced with guardrails and policy controls.](https://codenotary.com/use-cases#security#security)
  
  #### [**Shadow AI Governance** Unsanctioned AI tools discovered, surfaced, and brought under control.](https://codenotary.com/use-cases#shadowit)
- [Blog](https://codenotary.com/blog)
- [Press](https://codenotary.com/press)
- Resources
  
  #### [**Integrations** Connect with your favorite tools and platforms. LEARN MORE →](https://codenotary.com/integrations)
  
  #### [**Support** Get help from our dedicated support team. GET HELP →](https://support.codenotary.com)
  
  #### [**Success Stories** Read how customers achieve their goals. READ MORE →](https://codenotary.com/success)
  
  #### [**Learn** Access documentation and learning resources. EXPLORE →](https://codenotary.com/learn)

[Login](https://apps.codenotary.com/auth/login)

[All posts](https://codenotary.com/blog/all)

 Feb 13, 2025

# Most dangerous Cyberattacks of the last 12 months

 By  [blog](https://codenotary.com/blog/author/blog)  ·   2 minute read

Cybersecurity threats in 2024 have been more sophisticated and damaging than ever. Major cyber attacks targeted corporations, governments, and individuals, often exploiting known vulnerabilities cataloged in the Common Vulnerabilities and Exposures (CVE) database. Let’s explore some of the most significant breaches and their connections to specific CVEs.

## **1. MOVEit Transfer Exploit (CVE-2023-34362 & Variants)**

One of the most devastating attacks of 2024 was the continued exploitation of **MOVEit Transfer**, a popular file transfer software. Attackers leveraged an **SQL injection vulnerability (CVE-2023-34362)** to gain unauthorized access to sensitive data. This flaw led to a widespread data breach affecting businesses and government agencies. The exploitation of older CVEs highlights the importance of **patching software regularly** to prevent cascading security incidents.

 

## **2. Microsoft Exchange Zero-Day Attack (CVE-2024-XXXXX)**

A newly discovered zero-day vulnerability in **Microsoft Exchange** was exploited by state-sponsored hackers. The flaw allowed **remote code execution**, granting attackers complete control over email servers. Despite rapid response efforts, thousands of organizations fell victim to data theft and ransomware attacks. This incident underscores the critical need for **proactive vulnerability management** and threat intelligence monitoring.

 

## **3. 23andMe Credential Stuffing Attack (CVE-2024-XXXXX)**

Although not caused by a direct software vulnerability, the **23andMe data breach** resulted from **credential stuffing**, where attackers used leaked passwords from other breaches to access accounts. This event highlights the risks associated with **weak passwords and reused credentials**, emphasizing the importance of **multi-factor authentication (MFA)**.

## Analysis

 MOVEit Transfer Exploit (CVE-2023-34362 & Variants)

One of the most devastating attacks of 2024 was the continued exploitation of MOVEit Transfer, a popular file transfer software. Attackers leveraged an SQL injection vulnerability (CVE-2023-34362) to gain unauthorized access to sensitive data. This flaw led to a widespread data breach affecting businesses and government agencies. The exploitation of older CVEs highlights the importance of patching software regularly to prevent cascading security incidents.

 

 Microsoft Exchange Zero-Day Attack (CVE-2024-XXXXX)

A newly discovered zero-day vulnerability in Microsoft Exchange was exploited by state-sponsored hackers. The flaw allowed remote code execution, granting attackers complete control over email servers. Despite rapid response efforts, thousands of organizations fell victim to data theft and ransomware attacks. This incident underscores the critical need for proactive vulnerability management and threat intelligence monitoring.

 

 23andMe Credential Stuffing Attack (CVE-2024-XXXXX)

Although not caused by a direct software vulnerability, the 23andMe data breach resulted from credential stuffing, where attackers used leaked passwords from other breaches to access accounts. This event highlights the risks associated with weak passwords and reused credentials, emphasizing the importance of multi-factor authentication (MFA).

## **Stay Ahead of CVEs**

These attacks demonstrate that known vulnerabilities remain the biggest cybersecurity risks. Organizations must prioritize timely patching, vulnerability scanning, and security best practices to mitigate threats before they escalate into major breaches. Stay updated on CVEs—because hackers surely do!

 

One way to stay ahead is by using Codenotary’s Guardian. Guardian continuously monitors your assets for known vulnerabilities and autonomously mitigates these risks using our AI.

Try it our now: [https://guardian.codenotary.com/](https://guardian.codenotary.com/)

[![vulnerabilities](https://codenotary.com/hs-fs/hubfs/vulnerabilities.png?width=624&height=250&name=vulnerabilities.png)](https://guardian.codenotary.com/)

 

[![Share on twitter](https://4059529.fs1.hubspotusercontent-na1.net/hub/4059529/hubfs/01-marketplace/twitter-color.png?width=35&height=35&name=twitter-color.png)](https://twitter.com/intent/tweet?original_referer=https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months&utm_medium=social&utm_source=twitter&url=https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months&utm_medium=social&utm_source=twitter&source=tweetbutton&text=) [![Share on facebook](https://4059529.fs1.hubspotusercontent-na1.net/hub/4059529/hubfs/01-marketplace/facebook-color.png?width=35&height=35&name=facebook-color.png)](http://www.facebook.com/share.php?u=https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months&utm_medium=social&utm_source=facebook) [![Share on linkedin](https://4059529.fs1.hubspotusercontent-na1.net/hub/4059529/hubfs/01-marketplace/linkedin-color.png?width=35&height=35&name=linkedin-color.png)](http://www.linkedin.com/shareArticle?mini=true&url=https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months&utm_medium=social&utm_source=linkedin) [![Share on pinterest](https://4059529.fs1.hubspotusercontent-na1.net/hub/4059529/hubfs/pinterest.jpg?width=35&height=35&name=pinterest.jpg)](http://pinterest.com/pin/create/button/?url=https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months&utm_medium=social&utm_source=pinterest&media=) [![Share on email](https://4059529.fs1.hubspotusercontent-na1.net/hub/4059529/hubfs/01-marketplace/email-color.png?width=35&height=35&name=email-color.png)](mailto:?subject=Check%20out%20https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months&utm_medium=social&utm_source=email%20&body=Check%20out%20https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months&utm_medium=social&utm_source=email)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "blog",
    "url" : "https://codenotary.com/blog/author/blog"
  },
  "dateModified" : "2025-03-11T13:11:39.370Z",
  "datePublished" : "2025-02-13T15:15:00.000Z",
  "headline" : "Most dangerous Cyberattacks of the last 12 months",
  "image" : [ "https://codenotary.com/hubfs/cyberattacks.png" ],
  "mainEntityOfPage" : {
    "@id" : "https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://codenotary.com/hubfs/logo-light.svg"
    },
    "name" : "Codenotary, Inc."
  }
}
```

```json
{
  "@context" : "http://schema.org",
  "@type" : "Article",
  "author" : {
    "@type" : "Person",
    "name" : [ "blog" ],
    "url" : "https://codenotary.com/blog/author/blog"
  },
  "datePublished" : "2025-02-13T15:15:00+0000",
  "description" : "Identifying the top cyberattacks of 2024 and their links to CVEs, highlighting the critical need for timely patching and proactive security measures.",
  "headline" : "Most dangerous Cyberattacks of the last 12 months",
  "image" : "https://23873599.fs1.hubspotusercontent-na1.net/hubfs/23873599/cyberattacks.png",
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://cdn2.hubspot.net/hubfs/23873599/logo-light.svg"
    },
    "name" : ""
  },
  "url" : "https://codenotary.com/blog/most-dangerous-cyberattacks-of-the-last-12-months"
}
```