Nov. 9, 2023, 2:50 p.m. | Helga Labus

Help Net Security www.helpnetsecurity.com

A critical zero-day vulnerability (CVE-2023-47246) in the SysAid IT support and management software solution is being exploited by Lace Tempest, a ransomware affiliate known for deploying Cl0p ransomware. Lace Tempest has previously exploited zero-day vulnerability (CVE-2023-34362) in Progress Software’s MOVEit Transfer installations to steal data from many enterprises and public sector organizations. The group has also similarly leveraged zero days in the Accellion file transfer appliance and Fortra’s GoAnywhere file transfer solution. CVE-2023-47246 exploited The … More


The post …

0 day affiliate breach bug cl0p cl0p ransomware critical cve cve-2023-34362 cve-2023-47246 data don't miss enterprises exploit exploited extortion hackers hot stuff itsm it support lace tempest management microsoft moveit moveit transfer organizations progress progress software public ransomware security update software solution steal support sysaid tempest transfer vulnerability web shell zero-day zero-day bug zero-day vulnerability

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Senior Security Engineer

@ Core10 | Nashville, Tennessee, United States - Remote

Security Operations Engineer I

@ Jamf | US Remote

IT Security ISSO Specialist (15.10)

@ OCT Consulting, LLC | Washington, District of Columbia, United States

Compliance Officer

@ Aspire Software | Canada - Remote

Security Operations Center (SOC) - AVP

@ Paytm | Noida, Uttar Pradesh