Fresh MOVEit Bug Under Attack Mere Hours After Disclosure
ID: b6617a83-5455-5806-84d7-901327ee5b39
STIX ID: report--b6617a83-5455-5806-84d7-901327ee5b39
Feed Name: Dark Reading
Date Published: 2024-06-25
Date Updated: 2026-04-21
Author: Tara Seals, Managing Editor, News, Dark Reading
A high-severity authentication-bypass vulnerability (CVE-2024-5806, CVSS 7.4) in Progress MOVEit Transfer's SFTP module is being actively exploited in the wild hours after disclosure; researchers describe attack scenarios that allow forced authentication and SSH-key upload to impersonate users, Shadowserver reported exploit attempts and at least 1,800 exposed instances, and administrators are urged to patch affected versions immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
