The cyber attack on PricewaterhouseCoopers (PwC) involving MOVEit has escalated, with the Clop ransomware gang now unveiling the publication of the stolen data on a fresh domain with a .com extension.
Tweeter post of hackers, source: the cyberexpress.com
According to the threat actors, this information, reportedly originating from the PWC data breach, is soon to be disclosed on the website “pwcclientsanddocuments.com.”
Cybersecurity researcher Jeremiah Fowler discovered an unsecured database with 170,360 records belonging to a real estate company. It contained personal...
GreyNoise found attempts to exploit CVE-2023-28771, a vulnerability in Zyxel's IKE affecting UDP port 500. The attack centers around CVE-2023-28771,...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently included two high-risk vulnerabilities in its Known Exploited Vulnerabilities (KEV)...
Cybercriminals have shown remarkable audacity by developing a web-based edition of PwC’s authentic website, pwc.com. This deceitful platform is intended for the publication of all the stolen files from the PwC data breach.
The hacker group announced that a web version of PwC clients will be available on PWC.com for easy access to all files.
PWC data breach and MOVEit vulnerability crisis:
PricewaterhouseCoopers (PwC) recently fell victim to a large-scale cyberattack, which specifically targeted the MOVEit file transfer tool.
By taking advantage of a vulnerability in the tool, this campaign effectively utilized Progress’ MOVEit product, and PwC has confirmed its usage. Consequently, both the company and its clients were impacted significantly.
CRN reported that PwC stressed the “limited” impact of the effects and confirmed the integrity of its own IT network.