According to Neowin , the report states that the cyberattack targeted a vulnerability in the MOVEit software program. CISA Assistant Executive Eric Goldstein said they are providing support to several federal agencies whose systems were compromised through a vulnerability in their MOVEit software, and affirmed that the agency is working urgently to understand the impact and ensure timely remediation.
The hackers targeted a vulnerability in the MOVEit software.
To date, there has been no official comment from CISA regarding which U.S. government agencies were affected by this cyberattack. Furthermore, there is no information indicating whether sensitive U.S. government files were compromised. CISA Director Jen Easterly only told NBC News that the hackers responsible for the attack were "a notorious ransomware group."
Many experts believe the attacks originated from CL0P – a hacking group based in Russia. The FBI and CISA issued a warning about CL0P last week after the group claimed to have discovered a vulnerability in MOVEIt and was prepared to exploit it to attack systems through the software.
CL0P itself claimed responsibility for cyberattacks on several governments and businesses by exploiting this software vulnerability. Some of the victims identified by the group include BBC employees, British Airways, the oil giant Shell, the governments of the US states of Minnesota and Illinois, and many other organizations.
Source link








Comment (0)