Ransomware Gang Exploits MOVEit Transfer Vulnerability for Cyberattacks.

TL;DR Summary
The Cl0p Ransomware Gang has been exploiting a critical flaw in Progress Software's MOVEit Transfer application to drop ransomware. The gang has issued an ultimatum to several impacted businesses, urging them to get in touch by June 14, 2023, or risk getting all their stolen data published. The abuse of CVE-2023-34362, an SQL injection flaw in MOVEit Transfer, is a sign of the adversary continuously seeking zero-day exploits in internet-facing applications and using them to their advantage in order to extort victims.
Topics:business#cl0p-ransomware#cybercrime#cybersecurity#moveit-transfer#progress-software#sql-injection
- Clop Ransomware Gang Likely Aware of MOVEit Transfer Vulnerability Since 2021 The Hacker News
- MOVEit Transfer Vulnerability (CVE-2023-34362) Kroll
- Russia-Linked Hackers Give Victims a Week to Open Ransom Negotiations Bloomberg
- Ransomware gang exploits critical vulnerability in popular file transfer software Nextgov
- Analysis | Cyberdefenders respond to hack of file-transfer tool The Washington Post
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
3 min
vs 3 min read
Condensed
86%
593 → 82 words
Want the full story? Read the original article
Read on The Hacker News