The notorious cl0p ransomware group has published a list of companies compromised through vulnerabilities in cleo’s managed file transfer (mft) software While some cybersecurity researchers, including kevin beaumont, linked the cleo attacks to the termite ransomware group, which claimed a supply chain attack on blue yonder earlier this year, clop has said it is responsible for the cleo campaign both in statements to bleepingcomputer and on its leak site. The attack exploited vulnerabilities in cleo harmony, vltrader, and lexicom.
The cl0p ransomware gang threatens to publish data from all 63 companies listed as victims of its recent cleo software hack, unless ransom negotiations begin by friday. The clop ransomware group added 59 new companies to its leak site, the gang claims to have breached them by exploiting a vulnerability in cleo file transfer products. The cl0p ransomware group claims to have exploited a critical vulnerability in cleo’s managed file transfer software, targeting businesses globally
The clop ransomware gang claims dozens of victims from a cleo file transfer vulnerability, though several companies dispute the breaches