The MOVEit mass hacks hold a valuable lesson for the software industry

Date:

Share post:


It’s time to move it and protect against the next mass hack

The MOVEit mass hacks will likely go down in history as one of the largest and most successful cyberattacks of all time.

By exploiting a vulnerability in Progress Software’s MOVEit managed file transfer service, used by thousands of organizations to securely transfer large amounts of often-sensitive files, hackers were able to inject SQL commands and access customers’ sensitive data. The attack exploited a zero-day vulnerability, which meant Progress was unaware of the flaw and did not have time to patch it in time, leaving its customers largely defenseless.

The Russia-linked Clop ransomware group, which claimed responsibility for the hacks, has been publicly listing alleged victims since June 14. This growing list includes banks, hospitals, hotels, energy giants and more, and is part of an attempt to pressure victims into paying a ransom demand to stop their data from spilling online. In a post this week, Clop said that on August 15, it would leak  the “secrets and data” of all MOVEit victims that refused to negotiate.

This wasn’t Clop’s first mass hack, either; the group has been blamed for similar hacks targeting Fortra and Acellion’s file-transfer tools.

According to Emsisoft’s latest statistics, the MOVEit hack has affected at least 620 known corporates and more than 40 million individuals. Those figures have increased almost daily since the hacks began.

But how high could the numbers go? “It’s impossible to assess at this point,” Brett Callow, a ransomware expert and threat analyst at Emsisoft, told TechCrunch+. “We don’t yet know how many organizations were impacted or what data was compromised.”

Callow pointed out that around a third of the known victims were impacted via third parties, and others were compromised via subcontractors, contractors or vendors. “This complexity means it’s highly likely that some organizations that have been impacted don’t yet know they’ve been impacted,” he said.

While the impact of this hack is unusual because of its scale, the attack isn’t new in terms of its approach. Adversaries have long exploited zero-day flaws, and supply chain attacks have grown prevalent in recent years because one exploit can potentially affect hundreds, if not thousands, of customers.

This means that organizations need to act now to ensure they don’t fall victim to the next mass hack.

Picking up the pieces

For victims of the hacks, it may seem like the damage has already been done and recovery is impossible. But while recovering from an incident like this can take months or years, affected organizations need to act fast to understand not only what types of data were compromised, but also their potential violations of compliance standards or data privacy laws.



Source link

Lisa Holden
Lisa Holden
Lisa Holden is a news writer for LinkDaddy News. She writes health, sport, tech, and more. Some of her favorite topics include the latest trends in fitness and wellness, the best ways to use technology to improve your life, and the latest developments in medical research.

Recent posts

Related articles

Artifact co-founder Mike Krieger says there’s a ‘flavor’ of Twitter in app’s latest release

The AI-powered news reading app Artifact, built by Instagram’s co-founders, has been transforming itself into a more...

Fortnite maker Epic Games is laying off 16% of its workforce

Epic Games is laying off 16% percent of its employees, impacting about 900 people, the company has...

Bumble CEO Whitney Wolfe Herd shares how AI will ‘supercharge’ love and relathionships

Bumble, Inc. CEO Whitney Wolfe Herd believes the power of AI technology will lead to a better...

Publisher-focused Twitter alternative Post comes to Android, adds newsletter support

Post, a publisher-focused Twitter/X alternative backed by a16z, is bringing its social news-sharing app to Android today...

Mercury Fund closes largest fund to invest in SaaS startups between the coasts

Mercury Fund, an early-stage venture firm, closed on $160 million in capital commitments for its fifth fund,...

KSOC says it’s tackling cloud-native security in a way that is Kubernetes-first

The take-up of Kubernetes, a tool for managing containerized workloads, is only expected to increase as demand...

Adobe launches Photoshop’s web version with Firefly-powered AI tools

Adobe officially launched Photoshop for the web on Wednesday for all users with paid plans. The web...

Investors taking 30% of a startup in a round are short-sighted

Over the last couple of months I’ve spoken to a number of early-stage investors — both angels...