Kiteworks urges customers to stop using platform after warning from federal intelligence agencies
Kiteworks told customers to shut systems down after federal intel warned of possible targeting.
Kiteworks CISO Frank Balonis said federal intelligence authorities warned that a threat actor may try to target some customer Kiteworks systems. The company urged a precautionary six-hour shutdown on Saturday and said it is not aware of any compromise. Known vulnerabilities are addressed in release 9.5.1, and no CVE or exploiting group was identified, though a support official told Heise the warning involved a potential zero-day. Kiteworks, formerly Accellion, was breached in 2020 when Clop used a zero-day against its file-transfer tool.
82