logo

CLOP Ransomware exploits MOVEit software

ID: 3d4c2649-bfee-57c1-a6ec-02652968dadc

STIX ID: report--3d4c2649-bfee-57c1-a6ec-02652968dadc

Feed Name: McAfee Labs Blog

Threat Score
85/100

Date Published: 2023-06-21

Date Updated: 2026-04-28

Author: McAfee Labs

...
...

McAfee reports that the Clop ransomware group exploited a SQL injection vulnerability (CVE-2023-34362) in Progress MOVEit Transfer to steal files from numerous organizations (including banks, federal agencies, and companies) and extort victims by threatening to publish stolen data; CISA and FBI issued advisories and Progress provided mitigation guidance, and affected organizations are urged to follow vendor and CISA recommendations to remediate and protect exposed MOVEit instances.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.