* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, July 5, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Magicians and Battlebots light up Las Vegas entertainment scene – KSNV

    Magicians and Battlebots Take Las Vegas Entertainment by Storm

    Max-Matching Entertainments & Longhua District form partnership for new entertainment complex – Blooloop

    Max-Matching Entertainments and Longhua District Unite to Launch Thrilling New Entertainment Complex

    Kennedy Publishing, MGA Entertainment Launch Yummiland Magazine – License Global

    Kennedy Publishing, MGA Entertainment Launch Yummiland Magazine – License Global

    MAY HER SOUL REST IN PEACE šŸ™ Veteran entertainment columnist and talent manager Lolit Solis has passed away. She was 78 years old. https://tinyurl.com/6kumarkx | LatestChika.com – Facebook

    Beloved Entertainment Icon Lolit Solis Passes Away at 78 – A Life Remembered with Love and Respect šŸ™

    Neil Young Plays Rare Full-Band ā€˜Ambulance Blues’ With The Chrome Hearts – Yahoo

    Neil Young Stuns Fans with Rare Full-Band Performance of ‘Ambulance Blues’ Alongside The Chrome Hearts

    BTS Announce Their Big Return and Yes, They Already Have Some Major Plans in the Works – Yahoo

    BTS Announce Their Big Return and Yes, They Already Have Some Major Plans in the Works – Yahoo

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    New Technology for Water Efficiency and Working with Mexico on Screwworm – AG INFORMATION NETWORK OF THE WEST

    Revolutionary Water Efficiency Technology and Cross-Border Collaboration to Defeat Screwworm

    Environmental cognitive distance, R&D capability distance, and supply chain green technology innovation – Nature

    Bridging Gaps: How Environmental and R&D Differences Drive Green Technology Innovation in Supply Chains

    LG Innotek CEO Moon Hyuksoo: “Our Next-gen Substrate Technology Will Change the Industry Paradigm” – TechPowerUp

    LG Innotek CEO Moon Hyuksoo: “Our Next-Gen Substrate Technology Will Revolutionize the Industry” Revolutionizing the Future: LG Innotek’s CEO Unveils Game-Changing Next-Gen Substrate Technology

    Inspira Technologies Secures Landmark $22.5M Deal: Major Revenue Breakthrough After FDA Clearance – Stock Titan

    Inspira Technologies Secures Landmark $22.5M Deal: Major Revenue Breakthrough After FDA Clearance – Stock Titan

    Meiwu Technology Company Limited and Shenzhen Zhinuo – GlobeNewswire

    Meiwu Technology Company Limited and Shenzhen Zhinuo – GlobeNewswire

    Owls inspire new revolutionary noise reduction technology – KTEN

    Owls inspire new revolutionary noise reduction technology – KTEN

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Magicians and Battlebots light up Las Vegas entertainment scene – KSNV

    Magicians and Battlebots Take Las Vegas Entertainment by Storm

    Max-Matching Entertainments & Longhua District form partnership for new entertainment complex – Blooloop

    Max-Matching Entertainments and Longhua District Unite to Launch Thrilling New Entertainment Complex

    Kennedy Publishing, MGA Entertainment Launch Yummiland Magazine – License Global

    Kennedy Publishing, MGA Entertainment Launch Yummiland Magazine – License Global

    MAY HER SOUL REST IN PEACE šŸ™ Veteran entertainment columnist and talent manager Lolit Solis has passed away. She was 78 years old. https://tinyurl.com/6kumarkx | LatestChika.com – Facebook

    Beloved Entertainment Icon Lolit Solis Passes Away at 78 – A Life Remembered with Love and Respect šŸ™

    Neil Young Plays Rare Full-Band ā€˜Ambulance Blues’ With The Chrome Hearts – Yahoo

    Neil Young Stuns Fans with Rare Full-Band Performance of ‘Ambulance Blues’ Alongside The Chrome Hearts

    BTS Announce Their Big Return and Yes, They Already Have Some Major Plans in the Works – Yahoo

    BTS Announce Their Big Return and Yes, They Already Have Some Major Plans in the Works – Yahoo

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    New Technology for Water Efficiency and Working with Mexico on Screwworm – AG INFORMATION NETWORK OF THE WEST

    Revolutionary Water Efficiency Technology and Cross-Border Collaboration to Defeat Screwworm

    Environmental cognitive distance, R&D capability distance, and supply chain green technology innovation – Nature

    Bridging Gaps: How Environmental and R&D Differences Drive Green Technology Innovation in Supply Chains

    LG Innotek CEO Moon Hyuksoo: “Our Next-gen Substrate Technology Will Change the Industry Paradigm” – TechPowerUp

    LG Innotek CEO Moon Hyuksoo: “Our Next-Gen Substrate Technology Will Revolutionize the Industry” Revolutionizing the Future: LG Innotek’s CEO Unveils Game-Changing Next-Gen Substrate Technology

    Inspira Technologies Secures Landmark $22.5M Deal: Major Revenue Breakthrough After FDA Clearance – Stock Titan

    Inspira Technologies Secures Landmark $22.5M Deal: Major Revenue Breakthrough After FDA Clearance – Stock Titan

    Meiwu Technology Company Limited and Shenzhen Zhinuo – GlobeNewswire

    Meiwu Technology Company Limited and Shenzhen Zhinuo – GlobeNewswire

    Owls inspire new revolutionary noise reduction technology – KTEN

    Owls inspire new revolutionary noise reduction technology – KTEN

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

MOVEit body count closes in on 400 orgs, 20M+ individuals

July 23, 2023
in Technology
MOVEit body count closes in on 400 orgs, 20M+ individuals
Share on FacebookShare on Twitter

The number of victims and costs tied to the MOVEit file transfer hack continues to climb as the fallout from the massive supply chain attack enters week seven.

In late May, Russian ransomware gang Clop exploited a security hole in Progress Software’s MOVEit product suite to steal documents from vulnerable networks.

As of today, the number of affected organizations is closing is on 400 and include some really big names: the US Department of Energy and other federal agencies as well as huge corporations like energy company Shell, Deutsche Bank, consulting and business services firm PwC, and retail giant TJX Companies, which confirmed to The Register on Wednesday that “some files were downloaded by an unauthorized third party before Progress notified us of the vulnerability.”

TJX owns several retail brands including TJ Maxx, Marshalls, HomeGoods, HomeSense and Sierra.

Despite being one of the compromised companies, the TJX spokesperson added: “We do not believe there was any unauthorized access to any customer or associate personal information on TJX’s systems or any material impact to TJX.”

Plus, it’s looking like Estée Lauder Companies, which owns more than 20 beauty brands and disclosed a “cybersecurity incident” the same day that Clop listed the company on its leak site, may be among the victims too.

As of July 19, 383 organizations and over 20 million individuals have been compromised, according to cybersecurity outfit Emsisoft, which sourced its figures from breach notifications, SEC filings, other public data, and Clop’s leak site.

But, as the infosec team notes, some of the companies whose MOVEit installations were breached provide services to many other organizations.

That one-to-many impact is a very attractive thing for hackers, and that is what makes supply chain threats so sinister

Case in point: Clop exploited a deployment of MOVEit used by payroll services provider Zellis whose customers include British Airways, the BBC, and the Boots pharmacy chain in the UK, among others, and as a result these companies all saw their employees’ records stolen by the Russian gang via the software flaw.

And, as Emsisoft reports, another MOVEit user – the National Student Clearinghouse – partners with more than 3,500 schools in the US and processes information belonging to 17.1 million students. 

So it’s likely that the total number of victims will keep growing.  

“While this may not be in the same league as the SolarWinds incident, it’s nonetheless one of the most significant hacks of recent years,” Emsisoft Threat Analyst Brett Callow told The Register. “The costs will be absolutely massive, including credit monitoring for millions and lawsuits out the wazoo.”

Progress Software is facing multiple lawsuits claiming poor security led to the MOVEit bug – at least 13, according to The Wall Street Journal.

“To make matters worse, the potential for misuse of the stolen information is significant,” Emsisoft added. “And it’s not only how Cl0p may misuse the information that’s a concern. Once it’s released online, it becomes available to the global community of cyber-miscreants to use in BEC schemes, identity fraud, etc.”

Progress Software declined to comment on how many organizations have been affected by the MOVEit bugs.

Dublin Airport staff pay data ‘compromised’ by criminals

Boris Johnson pleads ignorance, which just might work

Third MOVEit bug fixed a day after PoC exploit made public

US government hit by Russia’s Clop in MOVEit mass attack

“We remain focused on supporting our customers and this report suggests that frequent and transparent updates have been helpful in encouraging customers to rapidly apply the fixes we have released,” a spokesperson told The Register. “We are continuing to work with industry-leading cybersecurity experts to investigate the issue and ensure we take appropriate response measures.”

The spokesperson added: “To our knowledge at this time, none of the vulnerabilities discovered after the May 31 vulnerability have been actively exploited.”

And there have been others since the end of that month.

A very buggy timeline

The May 31 bug – a SQL injection vulnerability – was the first. Progress patched this one, tracked as CVE-2023-34362, the next day. A second bug, CVE-2023-35036, came to light on June 9, and was also patched the next day.

Progress disclosed a third hole, CVE-2023-35708, on June 15.

Finally (we hope), three additional vulnerabilities – CVE-2023-36934, CVE-2023-36932, and CVE-2023-36933 – were spotted and fixed on July 5.

Despite the growing victim count, vulnerable orgs are doing a decent job at remediating MOVEit bugs, according to cybersecurity ratings company Bitsight.

Since the May 31 disclosure, “the number of organizations vulnerable to CVE-2023-34362 has dropped such that at least 77 percent of the originally affected organizations are no longer vulnerable,” Bitsight researcher Noah Stone wrote in a Thursday blog. “At most 23 percent of the initially affected organizations are still vulnerable while higher rates of vulnerability exist among the later CVEs.”

Perhaps unsurprisingly, more organizations are still vulnerable to the three most recent bugs disclosed earlier this month.

“At most 56 percent of organizations originally affected by the newest collection of CVEs … remain vulnerable,” Stone said.

Threat hunters at Huntress discovered the second MOVEit bug, and the firm’s senior security researcher, John Hammond, says these types of supply chain attacks are increasingly attractive to criminals because they provide more bang for the buck.

“Whether or not it be attacks like this MOVEit Transfer example, or even past high-impact intrusions like the Kaseya VSA ransomware incident or SolarWinds exploitation, all of these attacks have a certain supply chain aspect that absolutely expands the potential number of victims, bleeding into downstream organizations and the provider/customer relationship,” Hammond told The Register.

“That one-to-many impact is a very attractive thing for hackers, and that is what makes supply chain threats so sinister.”

However, he added, these types of intrusions mean “threat actors can only play that card once for each attack. After downstream victims are compromised, the well dries up, and the adversaries have to move onto their next attack.” ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Hacker News – https://www.theregister.com/2023/07/20/moveit_victim_count/

Tags: countMOVEittechnology
Previous Post

Remote Work to Wipe Out $800B from Office Values, McKinsey Says

Next Post

ā€˜Training My Replacement’: Inside a Call Center Worker’s Battle with A.I

Shriners Children’s to Establish Research Institute at Science Square – Georgia Tech News Center

Shriners Children’s to Establish Research Institute at Science Square – Georgia Tech News Center

July 5, 2025
Scientists warn US will lose a generation of talent because of Trump cuts | Trump administration – The Guardian

Scientists Warn Trump-Era Cuts Threaten to Drain a Generation of American Talent

July 5, 2025
7 outdated boomer behaviors that were once normal but now feel tone-deaf – VegOut

7 Outdated Boomer Behaviors That Once Seemed Normal but Now Feel Completely Tone-Deaf

July 5, 2025
The Conversation: Freedom in the modern world – standard.net

Embracing Freedom in the Modern World: Challenges and Opportunities

July 5, 2025
The U.S. added 147,000 jobs in June, relieving some concerns of a workforce slowdown – NBC News

U.S. Adds 147,000 Jobs in June, Easing Fears of Workforce Slowdown

July 5, 2025
Magicians and Battlebots light up Las Vegas entertainment scene – KSNV

Magicians and Battlebots Take Las Vegas Entertainment by Storm

July 5, 2025
Final House Vote on Devastating Health and Food Assistance Cuts – Medicare Rights Center

House Prepares to Vote on Major Cuts Jeopardizing Health and Food Assistance Programs

July 5, 2025
George Takei draws parallels between 1940’s Japanese-American internment camps and ICE detentions – CNN

George Takei draws parallels between 1940’s Japanese-American internment camps and ICE detentions – CNN

July 5, 2025
America ‘accuses’ one of China’s largest technology company: You plotted to steal our trade secrets and . – Times of India

America Charges Top Chinese Tech Giant with Plot to Steal Trade Secrets

July 5, 2025
The Billionaires Making Moves to Buy or Sell Sports Teams This Year – Business Insider

The Billionaires Making Moves to Buy or Sell Sports Teams This Year – Business Insider

July 5, 2025

Categories

Archives

July 2025
MTWTFSS
 123456
78910111213
14151617181920
21222324252627
28293031 
« Jun    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (705)
  • Economy (732)
  • Entertainment (21,621)
  • General (15,728)
  • Health (9,769)
  • Lifestyle (736)
  • News (22,149)
  • People (732)
  • Politics (740)
  • Science (15,949)
  • Sports (21,230)
  • Technology (15,715)
  • World (712)

Recent News

Shriners Children’s to Establish Research Institute at Science Square – Georgia Tech News Center

Shriners Children’s to Establish Research Institute at Science Square – Georgia Tech News Center

July 5, 2025
Scientists warn US will lose a generation of talent because of Trump cuts | Trump administration – The Guardian

Scientists Warn Trump-Era Cuts Threaten to Drain a Generation of American Talent

July 5, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

Ā© 2023 earth-news.info

No Result
View All Result

Ā© 2023 earth-news.info

No Result
View All Result

Ā© 2023 earth-news.info

Go to mobile version