REvil ransomware executes supply chain attack via malicious Kaseya update
therecord.media
therecord.media
How many people are affected this time?
SolarWinds Orion exploit was the basis of the US government hack. Kesaya here is ransomware. Is ConnectWise next?
[0]: https://www.vice.com/en/article/pan9wn/hackers-hijacked-asus...
With large ransomware attacks hitting on-premise solutions makes me suspect that perhaps there is a coordinated effort to help “push” people to the cloud.
The massive Microsoft exchange exploit only affecting on premise or hybrid installations. New Kaseya … on premise installations affected…. not newer cloud offerings.
Update: After reading the actual article .. I retract my conspiratorial ramblings…
“ They brought their entire cloud offline. Short of screaming "We've been hacked!" it's pretty certain that they feel it's origin is them.”
99.9% of Enterprise/on-prem customers do not have their shit together.
Yes, even banks and finance. I have seen banks still running XP on frontline workstations that are supposed to be on the blue network but somehow can surf the web and answer emails.
If you’re looking around trying to figure out if you can do better than the cloud/SaaS provider security-wise… you definitely can’t.
I have also seen fuckery comparable to exposed XP. Most companies WOULD be better trusting the black box that is the cloud.