"Critical Auth Bypass Exploit for Fortra GoAnywhere MFT Requires Immediate Patching"

1 min read
Source: BleepingComputer
"Critical Auth Bypass Exploit for Fortra GoAnywhere MFT Requires Immediate Patching"
Photo: BleepingComputer
TL;DR Summary

An exploit has been released for a critical authentication bypass vulnerability in Fortra's GoAnywhere MFT software, allowing attackers to create new admin users on unpatched instances. While Fortra silently patched the bug in December, a technical analysis and proof-of-concept exploit have now been published, raising concerns about potential attacks. This comes after the Clop ransomware gang breached over 100 organizations by exploiting a different flaw in the same software, highlighting the ongoing threat to MFT platforms from cybercriminals.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 3 min read

Condensed

85%

53178 words

Want the full story? Read the original article

Read on BleepingComputer