Cybersecurity

US Agencies Are Latest Victims in MOVEit Hacking Spree

  • Two entities tied to US Energy Department affected by attacks
  • Hacking gang has demanded victims reach out to negotiate
Lock
This article is for subscribers only.

About a week ago, the US Cybersecurity and Infrastructure Security Agency and the FBI sent out a joint advisory warning that a file-transfer product called MOVEit contained a dangerous flaw, one that could allow hackers to steal data from affected systems.

It turned out the problem hit close to home. On Thursday, the agency — called CISA for short — provided an update: The very same flaw in MOVEit had been used to breach several US agencies.