HALOCK Breach Bulletin

Kaseya later, data!

What happened:

REvil, a Russia-based sibling of DarkSide, managed to compromise hundreds or thousands or millions (they lie) of victims’ systems by attacking a trusted system, a Kaseya configuration manager.

REvil found an authentication vulnerability in Kaseya’s authorization controls, then used its new-found privileged access rights to command Kaseya to send ransomware payload to its customers. Kaseya VSA monitors and configures customer systems remotely to (more…)

Go to Top