8 GoAnywhere MFT breaches and counting. [Research Saturday]

Published: May 27, 2023, 7 a.m.

This week, our guests are Emily Austin and Himaja Motheram from Censys and their sharing their research - "Months after first GoAnywhere MFT zero-day attacks, Censys still sees about 180 public admin panels." In early February 2023,\xa0Censys researchers discovered\xa0a zero-day RCE vulnerability in Fortra\u2019s \u201cGoAnywhere MFT\u201d (Managed File Transfer) software.\nAfter finding this the Clop ransomware gang claimed that they exploited this vulnerability to breach the data of\xa0130 organizations and Censys found other ransomware groups were\xa0jumping on the bandwagon. They said "\xa0A single vulnerable instance has the potential to serve as a gateway to a data breach that could potentially impact millions of individuals."\nThe research can be found here:\nMonths after first GoAnywhere MFT zero-day attacks, Censys still sees ~180 public admin panels\n\nLearn more about your ad choices. Visit megaphone.fm/adchoices