Security News > 2021 > July > Researchers Reproduce Exploit Used in Kaseya Hack

Researchers Reproduce Exploit Used in Kaseya Hack
2021-07-07 11:24

Researchers have successfully reproduced the exploit used in the recent cyberattack targeting IT management software maker Kaseya and its customers.

Kaseya on July 2 urged customers to immediately shut down on-premises servers running its VSA endpoint management and network monitoring tool due to a cyberattack.

The company's researchers have managed to reproduce the attack and on Tuesday they demonstrated the exploit chain likely used by the cybercriminals.

The Dutch Institute for Vulnerability Disclosure said Kaseya had been aware of at least some of the vulnerabilities exploited in the attack and was in the process of patching them when the breach was detected.

Kaseya CEO Fred Voccola downplayed the impact of the incident in a video released on Tuesday, saying that impact "Is very minimal" and that it has been made "Larger than what it is."

"Given the relationship between Kaseya and MSPs, it's not clear how Kaseya would know the number of victims impacted. There is no way the numbers are as low as Kaseya is claiming though," said Jake Williams, CTO of cybersecurity firm BreachQuest.


News URL

http://feedproxy.google.com/~r/securityweek/~3/VIfWxsva-cU/researchers-reproduce-exploit-used-kaseya-hack

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Kaseya 6 2 10 11 12 35