The cyber attack on PricewaterhouseCoopers (PwC) involving MOVEit has escalated, with the Clop ransomware gang now unveiling the publication of the stolen data on a fresh domain with a .com extension.
According to the threat actors, this information, reportedly originating from the PWC data breach, is soon to be disclosed on the website “pwcclientsanddocuments.com.”
Renowned cybersecurity researcher Jeremiah Fowler uncovered a non-password-protected database having over 1.1 million records linked to Conduitor Limited (Forces Penpals)....
"Palo Alto Networks has observed threat activity exploiting an unauthenticated remote command execution vulnerability against a limited number of firewall...
Cybercriminals have shown remarkable audacity by developing a web-based edition of PwC’s authentic website, pwc.com. This deceitful platform is intended for the publication of all the stolen files from the PwC data breach.
The hacker group announced that a web version of PwC clients will be available on PWC.com for easy access to all files.
PWC data breach and MOVEit vulnerability crisis:
PricewaterhouseCoopers (PwC) recently fell victim to a large-scale cyberattack, which specifically targeted the MOVEit file transfer tool.
By taking advantage of a vulnerability in the tool, this campaign effectively utilized Progress’ MOVEit product, and PwC has confirmed its usage. Consequently, both the company and its clients were impacted significantly.
CRN reported that PwC stressed the “limited” impact of the effects and confirmed the integrity of its own IT network.