Kiteworks patches critical flaw, brings customer systems online
Kiteworks patched a critical flaw and lifted a global shutdown advisory after finding no compromise.
Kiteworks, formerly Accellion, told customers on Saturday to shut down servers after a federal intelligence warning of a potentially imminent cyberattack. It later restored hosted systems, reported no abnormal activity or compromise, and lifted the shutdown recommendation as of September 27. The company patched a critical flaw in an unnamed feature used by less than 1% of customers, including self-hosted Advanced Forms, and said it has no indication of exploitation and has not assigned a CVE. Shadowserver observed nearly 400 internet-exposed instances, 234 in the United States; Clop previously exploited legacy Accellion FTA in 2021.