Kiteworks Fixes Critical Flaw Found During Nine-Hour Precautionary Shutdown
Kiteworks patched a critical, previously unknown vulnerability affecting under 1% of customers during a nine-hour precautionary shutdown triggered by attack intelligence.
Kiteworks (formerly Accellion) said it worked with federal intelligence authorities and found a critical flaw in a capability enabled for less than 1% of its customer base during a scheduled precautionary shutdown. A fix was deployed during the window and an additional protective layer was applied across all environments. The company states there is no evidence the flaw was ever exploited, no CVE ID has been assigned, and customers can bring systems back online as of September 27, 2026.