Security News > 2023 > August > The MOVEit hack and what it taught us about application security
The MOVEit hack was not the same as classic ransomware attacks for which groups like Clop initially gained notoriety.
Emerging digital forensic analysis from the aftermath of MOVEit suggests the hackers knew about the zero-day flaw in MOVEit as far back as 2021 when they tested it out covertly to see how much access they could get.
The MOVEit hack progressed from manually testing the SQL injection flaw to exploiting large numbers of organizations with it in an automated way.
The actual hack worked by exploiting the SQL vulnerability to install a backdoor in MOVEit that facilitated data downloads from organizations using the file transfer solution.
BBC. The world's media took swift note of the MOVEit hack when it emerged the UK's state broadcaster was one of the victims.
Sporadic or infrequent penetration testing won't suffice to secure your network or apps from incidents like the MOVEit hack.
News URL
Related news
- US arrests Scattered Spider suspect linked to telecom hacks (source)
- Wyden proposes bill to secure US telecoms after Salt Typhoon hacks (source)
- US reportedly mulls TP-Link router ban over national security risk (source)
- US court finds spyware maker NSO liable for WhatsApp hacks (source)
- China-Linked Cyber Threat Group Hacks US Treasury Department (source)
- CISA says recent government hack limited to US Treasury (source)
- US Treasury hack linked to Silk Typhoon Chinese state hackers (source)
- What 2024 taught us about security vulnerabilties (source)
- US sanctions Chinese firm, hacker behind telecom and Treasury hacks (source)