Progress quietly fixes MOVEit auth bypass flaws (CVE-2024-5805, CVE-2024-5806)Help Net Security·Jun 8, 10:33 UTC · Jun 8, 2026Vulnerability in the wildCVE-2024-5805CVE-2024-580660
Clop gang was testing MOVEit Transfer bug since 2021Security Affairs·Jun 9, 12:49 UTC · Jun 9, 2023Ransomware in the wildCVE-2023-34362CVE-2023-066960
New MOVEit Transfer critical bug is actively exploitedSecurity Affairs·Jun 26, 19:54 UTC · Jun 26, 2024Vulnerability in the wildCVE-2024-5805CVE-2024-580660
Critical zero-day vulnerability in MOVEit Transfer exploited by attackers!Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Exploit / PoC in the wildCVE-2023-066960
MOVEit Systems Face Fresh Attack Risk Following Scanning ActivityInfosecurity Magazine·Jun 27, 09:00 UTC · Jun 27, 2025Ransomware in the wildCVE-2023-34362CVE-2023-3693460
MOVEit Transfer software zeroSecurity Affairs·Jun 7, 13:57 UTC · Jun 7, 2023Exploit / PoC in the wild60
MOVEit Transfer Under Attack: Zero-Day Vulnerability Actively Being ExploitedThe Hacker News·Jun 7, 08:52 UTC · Jun 7, 2023Exploit / PoC in the wildCVE-2023-3436260
Critical ZeroInfosecurity Magazine·Jun 5, 17:00 UTC · Jun 5, 2023Ransomware in the wildCVE-2023-3436260
Microsoft blames Clop gang for 'MOVEit Transfer' attacksSecurity Affairs·Jun 5, 15:07 UTC · Jun 5, 2023Ransomware in the wildCVE-2023-3436260
MOVEit automation flaws could enable full system compromiseSecurity Affairs·May 4, 21:32 UTC · May 4, 2026Ransomware in the wildCVE-2026-4670CVE-2026-5174CVE-2023-3436260
Progress Patches Critical MOVEit Automation Bug Enabling Authentication BypassThe Hacker News·May 4, 16:34 UTC · May 4, 2026Vulnerability in the wildCVE-2026-4670CVE-2026-517460
Exploit Attempts Recorded Against New MOVEit Transfer VulnerabilityThe Hacker News·Jul 1, 05:51 UTC · Jul 1, 2024Vulnerability in the wildCVE-2024-5806CVE-2024-5805CVE-2023-34362+3 CVEs60
Active exploitation of the MOVEit Transfer vulnerability — CVE-2023Cisco Talos·Jun 16, 18:17 UTC · Jun 16, 2023Vulnerability in the wildCVE-2023-34362CVE-2023-35036CVE-2023-3570860
Two Energy Department entities breached as part of massive MOVEit compromiseCyberScoop·Jun 16, 15:46 UTC · Jun 16, 2023Data breach in the wild60
New Critical MOVEit Transfer SQL Injection Vulnerabilities DiscoveredThe Hacker News·Jun 15, 00:00 UTC · Jun 15, 2023Vulnerability in the wildCVE-2023-3436260
CISA adds Progress MOVEit Transfer zero-day to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jun 2, 21:37 UTC · Jun 2, 2023Exploit / PoC in the wildCVE-2023-3436260
MOVEit Transfer zero-day was exploited by Cl0p gang (CVE-2023-34362)Help Net Security·Jun 8, 10:36 UTC · Jun 8, 2026Ransomware in the wildCVE-2023-3436260
It's time to patch your MOVEit Transfer solution again!Help Net Security·Jun 12, 00:00 UTC · Jun 12, 2023Vulnerability in the wildCVE-2023-3436260
Progress Discloses Two New Vulnerabilities in MOVEit ProductsInfosecurity Magazine·Jun 26, 17:15 UTC · Jun 26, 2024Vulnerability in the wildCVE-2024-5806CVE-2024-580560
Clop Ransomware Gang Likely Aware of MOVEit Transfer Vulnerability Since 2021The Hacker News·Jun 9, 15:38 UTC · Jun 9, 2023Ransomware in the wildCVE-2023-3436260
Two major energy corporations added to growing MOVEit victim listCyberScoop·Jun 27, 19:07 UTC · Jun 27, 2023Ransomware in the wild60
MOVEit Transfer Faces Increased Threats as Scanning Surges and CVE Flaws Are TargetedThe Hacker News·Jun 27, 07:49 UTC · Jun 27, 2025Ransomware in the wildCVE-2023-34362CVE-2023-3693460
MOVEit app mass-exploited last month patches new critical vulnerabilityArs Technica · Security·Jul 7, 19:10 UTC · Jul 7, 2023Vulnerability in the wildCVE-2023-3693460
US cyber officials offer technical details associated with CL0P ransomware attacksCyberScoop·Jun 7, 20:12 UTC · Jun 7, 2023Ransomware in the wildCVE-2023-346260
Microsoft: Lace Tempest Hackers Behind Active Exploitation of MOVEit Transfer AppThe Hacker News·Jun 6, 03:48 UTC · Jun 6, 2023Ransomware in the wildCVE-2023-3436260
Week in review: MOVEit Transfer critical zero-day vulnerability, Kali Linux 2023.2 releasedHelp Net Security·Jun 4, 00:00 UTC · Jun 4, 2023Exploit / PoC in the wildCVE-2023-28771CVE-2023-2868CVE-2023-2798860
Casualties keep growing in this month’s mass exploitation of MOVEit 0Ars Technica · Security·Jun 27, 23:18 UTC · Jun 27, 2023Ransomware in the wildCVE-2023-066960
Clop is back to wreak havoc via vulnerable fileCyberScoop·Dec 17, 19:46 UTC · Dec 17, 2024Ransomware in the wildCVE-2024-50623CVE-2024-5595660
Exploitation of vulnerabilities almost tripled as a source of data breaches last yearCyberScoop·May 1, 12:58 UTC · May 1, 2024Data breach in the wild60
They’ve begun: Attacks exploiting vulnerability with maximum 10 severity ratingArs Technica · Security·Oct 3, 21:53 UTC · Oct 3, 2023Vulnerability in the wildCVE-2023-40044CVE-2023-4265760
Clop Drives Record Ransomware Activity in JuneInfosecurity Magazine·Jul 21, 10:30 UTC · Jul 21, 2023Ransomware in the wildCVE-2023-3436260
Week in review: Chrome zero-day is actually in libwebp, Sony hacking rumoursHelp Net Security·Oct 1, 00:00 UTC · Oct 1, 2023Exploit / PoC in the wildCVE-2023-42793CVE-2023-5129CVE-2023-4863+1 CVEs60
CLOP targets Gladinet CentreStack servers in largeSecurity Affairs·Dec 19, 11:48 UTC · Dec 19, 2025Ransomware in the wildCVE-2025-11371CVE-2025-30406CVE-2025-61882+2 CVEs160
CL0P's Ransomware RampageThe Hacker News·May 13, 09:30 UTC · May 13, 2024Ransomware in the wildCVE-2023-0669CVE-2023-27350CVE-2023-27351+2 CVEs60
#mWISE: Why Zero Days Are Set for Highest Year on RecordInfosecurity Magazine·Sep 22, 14:15 UTC · Sep 22, 2023Ransomware in the wild60
QR codes are relevant again for everyone from diners to threat actorsCisco Talos·Jul 13, 18:00 UTC · Jul 13, 2023Threat actor in the wild60
Cybersecurity hotlines at colleges could go a long way toward filling the skills gapCisco Talos·Jun 22, 18:00 UTC · Jun 22, 2023Ransomware in the wildCVE-2023-3436260
URLs have always been a great hiding place for threat actorsCisco Talos·Jun 15, 18:00 UTC · Jun 15, 2023Threat actor in the wildCVE-2023-3436260
Supply Chain Cyber Risk ManagementRecorded Future·Jun 30, 00:00 UTC · Jun 30, 2026Ransomware in the wild60
Week in review: cPanel vulnerability actively exploited, DigiCert breach, LinkedIn job scamsHelp Net Security·May 10, 00:00 UTC · May 10, 2026Vulnerability in the wildCVE-2026-41940CVE-2026-4670CVE-2026-5174+4 CVEs60