Кибер халдлагын эрсдэл үүссэн тул Kiteworks үйлчлүүлэгчдээ серверээ түр унтраахыг зөвлөв

Published:

Энэхүү мэдээ, нийтлэлийг хиймэл оюун боловсруулав.

Технологийн компани хууль сахиулах байгууллагаас авсан мэдээллийн дагуу кибер халдлагаас сэргийлэх урьдчилан сэргийлэх арга хэмжээг авч эхэллээ

Файл дамжуулах болон мэдээллийн аюулгүй байдлын шийдэл нийлүүлэгч Kiteworks компани өөрийн системүүд рүү чиглэсэн кибер халдлага гарах магадлалтай гэж үзэн үйлчлүүлэгчдээ серверүүдээ түр хугацаанд унтраахыг зөвлөжээ. Тус компани хууль сахиулах байгууллагуудаас авсан мэдээлэлд үндэслэн энэхүү урьдчилан сэргийлэх арга хэмжээг авч байгаа бөгөөд одоогоор ямар нэгэн зөрчил илрээгүй гэдгээ мэдэгдсэн байна.

Kiteworks-ийн мэдээллийн аюулгүй байдал хариуцсан захирал Фрэнк Балонис одоогоор мэдэгдэж буй бүх эмзэг байдлыг 9.5.1 хувилбарт зассан болохыг онцолжээ. Гэсэн хэдий ч компани одоогоор тодорхойгүй байгаа буюу “zero-day” төрлийн эмзэг байдлыг ашиглан халдлага үйлдэх эрсдэлээс сэргийлэх зорилгоор ийнхүү арга хэмжээ авч байна.

Тус компани нь эрүүл мэнд, технологи, боловсрол, засгийн газрын байгууллага зэрэг олон салбарт үйлчилгээ үзүүлдэг бөгөөд дэлхий даяар олон мянган үйлчлүүлэгчтэй юм. Үүнтэй төстэй томоохон хэмжээний халдлага 2021 онд тус компанийг Accellion нэртэй байх үед гарч байсан бөгөөд хакерууд файл дамжуулах системийн цоорхойг ашиглан байгууллагуудын мэдээллийг хулгайлж, барьцаалж байсан түүхтэй.

Дэлгэрэнгүйг эх сурвалжаас харах

↓Эх сурвалжийг нээх ↓

Technology giant Kiteworks is urging customers to shut down their systems after the company received information that hackers may attempt to target them.

Kiteworks (formerly Accellion), which makes tools for transferring large files and sensitive datasets over the internet, confirmed to TechCrunch that it had notified its customers about a potential threat. The news was first reported exclusively by German publication Heise, which cited an email that Kiteworks had sent to its customers about an “imminent” attack that could happen as soon as this weekend.

When reached by email on Friday, Kiteworks chief information security officer Frank Balonis told TechCrunch that the company “received credible threat intelligence from law enforcement indicating that a threat actor may attempt to target some Kiteworks systems for customers.”

“Out of an abundance of caution, we notified customers directly and recommended a precautionary shutdown window while we and our law enforcement partners work through the matter,” said Balonis. “We are not aware of any compromise of Kiteworks systems, and this advisory is preventative rather than a response to a confirmed breach.”

Kiteworks did not say, when asked, which law enforcement agency alerted the company or which hacking group may be behind the threat. The FBI and the U.S. cybersecurity agency CISA did not respond to TechCrunch’s requests for comment about the Kiteworks alert to customers.

Balonis said that the company has fixed all known vulnerabilities in its latest software release, 9.5.1, which it recommends all customers use.

According to a copy of the email sent to customers on Friday and shared with TechCrunch, the company said it was concerned about the exploitation of vulnerabilities that are currently unknown to Kiteworks. These bugs are known as zero-day flaws because they give the vendor— in this case Kiteworks — no time to fix the flaws before they are exploited.

In the email, Kiteworks urged customers to shut down their systems before the weekend, if not sooner, to “protect against any potential zero-day attacks,” as the company cannot confirm whether there are other potential routes for improper access.

It’s unclear exactly how many customers may be affected, but Kiteworks notes on its website that it has thousands of customers across healthcare, technology, education, automotive, and government, among others. Security researcher Kevin Beaumont pointed to a listing of at least a thousand internet-facing Kiteworks systems online today.

Kiteworks is no stranger to cyberattacks. Prior to its rebrand from Accellion in late 2021, a vulnerability in its file-transfer application allowed an extortion gang to mass hack and steal data from hundreds of organizations that relied on the product to send customer or internal corporate data over the internet.

The mass hack was part of a broader hacking campaign targeting file transfer products, with the goal of stealing copies of the data that had been previously sent over the internet but not deleted from the affected servers. The hackers then held the data for ransom, threatening to publicly release customers’ information if the victim organizations did not pay a ransom.

Do you know more about the threat facing Kiteworks customers? Are you an affected Kiteworks customer? We’d love to hear from you. You can contact this reporter securely on Signal at zackwhittaker.1337, or reach him by email at zack.whittaker@techcrunch.com.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

Та юу гэж бодож байна?

Сэтгэгдлээ оруулна уу!
Please enter your name here

MFC.mn сайтад сэтгэгдэл оруулахад анхаарах зүйлс

Холбоотой

spot_img

Шинэ

spot_img