News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Second vulnerability found in MOVEit - new patch!
B2B Cyber ​​Security ShortNews

The vulnerability in MOVEit Transfer was discovered on May 31st and caused a stir as it was immediately exploited by the APT group CLOP and stolen a lot of data. The manufacturer immediately offered a patch, which is already out of date, as a second vulnerability was found in which now affects MOVEit Transfer and also MOVEit Cloud. For many companies, the situation is far from over. After the first vulnerability in MOVEit Transfer, the manufacturer Progress Software immediately offered a suitable patch. But the APT group CLOP seems to have had enough time...

Read more

MOVEit zero-day gap: The countdown is on
MOVEit zero-day gap: The countdown is on

Last week, Progress Software reported a critical security vulnerability (CVE-2023-34362) in its MOVEit Transfer product and related MOVEit cloud solutions. The APT group CLOP, which also issued an ultimatum until June 14.06, carried out mass attacks and data theft on the software that is often used around the world. As the name suggests, MOVEit Transfer is a system that allows for easy storage and sharing of files across a team, department, company, or even a supply chain. The software is also used by the AOK, for example. In the current…

Read more

AOK – MOVEit hack: CLOP Group issues ultimatum until June 14th 
AOK - MOVEit hack: CLOP Group issues ultimatum until June 14th

A few days ago it became known that the MOVEit data transfer software used by the AOK had a blatant vulnerability. The BSI even registered a data leak. In the meantime, there is an ultimatum on the website of the CLOP APT group: companies affected worldwide must report by June 14 and pay a ransom for their data, otherwise everything will be published. While some experts are still arguing about who exploited and attacked the MOVEit Transfer vulnerability worldwide, the APT group released a statement on their leak page. There it is stated that a large number of companies store masses of data…

Read more

AOK: Software vulnerability - BSI confirms data leak
B2B Cyber ​​Security ShortNews

The AOK and many of their nationwide offices use the software product MOVEit Transfer. There is now the dangerous vulnerability CVE-2023-34362, which is not yet classified. However, the BSI has given the vulnerability the second-highest internal warning level, Orange, and writes “The BSI is monitoring the active exploitation of the vulnerability with confirmed data leakage.” The manufacturer Progress already published on May 31, 2023 that a critical vulnerability had been found in its software product MOVEit Transfer. Exploitation of the vulnerability allows privilege escalation and unauthorized access to the file system. Progress is already providing…

Read more

1,2 million euros: GDPR fine against AOK
B2B Cyber ​​Security ShortNews

Expensive data breach: The million dollar fine for the AOK should sensitize all companies. Email marketing has to adhere meticulously to the provisions of the GDPR - otherwise it will be expensive. The data protection officer of the state of Baden-Württemberg has imposed a fine of 1,2 million euros on the AOK Baden-Württemberg. The reason for the fine was the use of personal data of 500 people as part of an email marketing campaign, although the data subjects had not consented to its use for advertising purposes. Obligation to report data breaches Sending newsletters or marketing e-mails plays a central role in almost every company….

Read more