Arctic Wolf’s Post

On December 7, Arctic Wolf began observing a novel campaign exploiting Cleo Managed File Transfer (MFT) products across several customer environments. The vulnerability in this campaign involved unauthorized remote code execution (RCE) through the manipulation of the filesystem, and was suspected of being related to CVE-2024-50623. Most intrusions associated with this campaign were observed in early December. Since our previous security bulletin, several reports have emerged describing activity similar to what we had observed, with several key updates. Learn more in our latest security bulletin: https://ow.ly/QBrV50UrGvA #EndCyberRisk

Follow-up: Threat Campaign Targeting Cleo MFT Products - Arctic Wolf

Follow-up: Threat Campaign Targeting Cleo MFT Products - Arctic Wolf

arcticwolf.com

To view or add a comment, sign in

Explore topics