Over the last weeks, hundreds of organizations including 2 DOE Agencies, were impacted by ransomware attacks, as a result of the the MOVEit Transfer Vulnerability, CVE-2023-34362.
This vulnerability enables attackers to obtain privelege escalation and gain unauthorized access to sensitive data and systems.
The threat group’s MO is to encrypt the victim’s data and threaten to leak it publicly if a ransom is not paid, a tactic known as “double extortion”. The vulnerability led to serious repercussions including operational disruption and reputational damage.
Our latest Campaign of the Month exercise, allows Cyberbit customers to be prepared for attacks exploiting the MOVEit vulnerability by reviewing the attack flow, and providing the recommended steps for mitigating it.