June 2, 2023, 10:20 p.m. |

BankInfoSecurity.com RSS Syndication www.bankinfosecurity.com

Mandiant Said TTPs of Threat Group Behind Exploiting MOVEit Appear Similar to FIN11
Adversaries have taken advantage of a zero-day vulnerability in Progress Software's managed file transfer product to deploy web shells and steal data, Mandiant found. An unknown threat actor began exploiting the critical SQL injection vulnerability in MOVEit Transfer on May 27.

actor critical data exploiting file file transfer flaw hackers injection managed managed file transfer mandiant moveit moveit transfer product progress shells software sql sql injection steal taken threat threat actor threat group ttps vulnerability web zero-day zero-day vulnerability

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)