The MOVEit Ransomware Attack: Vulnerabilities and Extortion Efforts.

TL;DR Summary
Progress Software's managed file transfer application, Moveit, has been hit by a third vulnerability, CVE-2023-35708, which allows hackers to gain unauthorized access to its database. The vulnerability joins two previously reported issues, CVE-2023-34362 and CVE-2023-35036. More than 3,000 hosts are running the software, with over 30% in the financial services industry. Progress Software recommends users and hosts patch the product and mitigate the vulnerabilities immediately. Researchers believe the Clop ransomware gang has been aware of the vulnerability since 2021.
Topics:business#cybersecurity#managed-file-transfer#progress-software#ransomware#sql-injection#vulnerabilities
- Vulnerabilities result in millions of compromised users of popular managed file transfer software TechSpot
- Ransomware Gang Haunted US Firms Long Before MOVEit Hack Bloomberg
- Clop MOVEit attack extortion efforts begin | SC Media SC Media
- Third MOVEit bug fixed a day after PoC exploit made public The Register
- What to know about the MOVEit ransomware attack that hit U.S. agencies The Washington Post
Reading Insights
Total Reads
0
Unique Readers
1
Time Saved
2 min
vs 3 min read
Condensed
83%
453 → 79 words
Want the full story? Read the original article
Read on TechSpot