Curated Content | Thought Leadership | Technology News

#StopRansomware: FBI and CISA Issue Advisory on MOVEit Vulnerability

Organizations from multiple sectors have been targeted and attacked.
H. Michael Burgett
Contributing Writer

The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA), released a joint Cybersecurity Advisory (CSA) that ransomware gang CL0P, also known as TA505, has been exploiting a previously unknown SQL injection vulnerability in Progress Software’s managed file transfer (MFT) solution called MOVEit Transfer.

Why it matters: The FBI and CISA are recommending organizations implement suggested mitigations to improve their organization’s security posture in response to threat actors’ activity.

  • The CL0P Ransomware gang infected internet-facing MOVEit Transfer web applications with a web shell named LEMURLOOT, which allowed them to steal data from the underlying MOVEit Transfer databases.
  • The ransomware gang, in a communication published on their data leak platform, directs victims to initiate contact and engage in payment negotiations by June 14, 2023, warning that failure to comply will result in the public exposure of their data.
  • According to a report by cybersecurity firm SentinelOne, organizations from various sectors, such as aviation, transportation, logistics, entertainment, financial services, insurance, healthcare, pharmaceuticals, manufacturing, mechanical engineering, media, technology, utilities, and public services, have been targeted and attacked.

Go Deeper —>

×
You have free article(s) left this month courtesy of CIO Partners.

Enter your username and password to access premium features.

Don’t have an account? Join the community.

Would You Like To Save Articles?

Enter your username and password to access premium features.

Don’t have an account? Join the community.

Save My Spot For TNCR LIVE!

Thursday April 18th

9 AM Pacific / 11 PM Central / 12 PM Eastern

Register for Unlimited Access

Already a member?

Digital Monthly

$12.00/ month

Billed Monthly

Digital Annual

$10.00/ month

Billed Annually

US Department of Homeland Security seal on United States of America flag close u
An inaugural artificial intelligence roadmap.

Would You Like To Save Books?

Enter your username and password to access premium features.

Don’t have an account? Join the community.

Log In To Access Premium Features

Sign Up For A Free Account

Please enable JavaScript in your browser to complete this form.
Name
Newsletters