Startups & Technology

Kiteworks Urges Customers to Offline Servers Over Imminent Attack Risk

Kiteworks Urges Customers to Offline Servers Over Imminent Attack Risk

Frank Balonis, the company’s chief information security officer, confirmed the alert is strictly preventative. While the firm maintains that its current software, version 9.5.1, is free of known vulnerabilities, the warning specifically addresses the threat of previously unknown flaws. By advising a shutdown window throughout the weekend, Kiteworks intends to block attackers from gaining unauthorized access to sensitive datasets held by government, healthcare, and automotive clients.

Security researcher Kevin Beaumont identified at least a thousand internet-facing systems currently at risk. This proactive stance follows a significant history of security challenges for the company, formerly known as Accellion. In 2021, a series of exploits targeting their file-transfer tools allowed extortion gangs to siphon data from hundreds of organizations, leading to widespread ransom demands. Neither the FBI nor CISA has commented on the current intelligence, leaving the specific identity of the threat actors and the scope of the potential zero-day attack currently undisclosed.

Share

Comments (0)

Leave a comment

No comments yet. Be the first!