'Termite' Ransomware Likely Behind Cleo Zero-Day Attacks
ID: 8e8646e9-269c-541e-a4ff-978c9c94706a
STIX ID: report--8e8646e9-269c-541e-a4ff-978c9c94706a
Feed Name: Dark Reading
Threat Score
Researchers reported active, widespread exploitation of a Cleo file-transfer RCE (CVE-2024-50623) beginning Dec 3 that has impacted multiple organizations; the ransomware group Termite is the likely actor and the vendor's previous patch appears insufficient, prompting recommendations to remove Internet exposure and await a new fix.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
