login-customizer domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /home1/natiopq9/public_html/wp-includes/functions.php on line 6131The post Clop Claims Zero-Day Attacks Against 130 Organizations appeared first on The National Law Forum.
]]>Russia-linked ransomware gang Clop has claimed that it has attacked over 130 organizations since late January, using a zero-day vulnerability in the GoAnywhere MFT secure file transfer tool, and was successful in stealing data from those organizations. The vulnerability is CVE-2023-0669, which allows attackers to execute remote code execution.
The manufacturer of GoAnywhere MFT notified customers of the vulnerability on February 1, 2023, and issued a patch for the vulnerability on February 7, 2023.
HC3 issued an alert on February 22, 2023, warning the health care sector about Clop targeting healthcare organizations and recommended:
Security professionals are recommending that information technology professionals update machines to the latest GoAnywhere version and “stop exposing port 8000 (the internet location of the GoAnywhere MFT admin panel).”
Article By Linn F. Freedman of Robinson & Cole LLP
For more cybersecurity legal news, click here to visit the National Law Review.
The post Clop Claims Zero-Day Attacks Against 130 Organizations appeared first on The National Law Forum.
]]>