logo

ConnectWise ScreenConnect Mass Exploitation Delivers Ransomware

ID: 5fb53613-e26f-5b13-a01f-099fa9bc7d0e

STIX ID: report--5fb53613-e26f-5b13-a01f-099fa9bc7d0e

Feed Name: Dark Reading

Threat Score
90/100

Date Published: 2024-02-23

Date Updated: 2026-04-21

Author: Tara Seals, Managing Editor, News, Dark Reading

...
...

This report describes active exploitation of critical ConnectWise ScreenConnect flaws — an authentication bypass (CVE-2024-1709, CVSS 10) and a path-traversal bug (CVE-2024-1708) — that expose thousands of internet-facing instances; researchers observed initial access brokers and ransomware deployment, CISA added the bugs to its Known Exploited Vulnerabilities catalog, and vendors/analysts published IoCs and patching guidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.