MOVEit

MOVEit
Developer(s)Ipswitch, Inc. (Now part of Progress Software)
Stable release
MOVEit Transfer 2023.0.6[1]
MOVEit Automation 2023.0.2[2] / September 20, 2023; 14 months ago (2023-09-20)
WebsiteOfficial site

MOVEit is a managed file transfer software product produced by Ipswitch, Inc. (now part of Progress Software).[3] MOVEit encrypts files and uses file transfer protocols such as FTP(S) or SFTP to transfer data, as well as providing automation services, analytics and failover options.[3][4] The software has been used in the healthcare industry by companies such as Rochester Hospital[5] and Medibank,[6] as well as thousands of IT departments in high technology, government, and financial service companies like Zellis.[7]

History

MOVEit was released in 2002 by Standard Networks.[8] In 2006, the company released integration between MOVEit and antivirus software to stop the transfer of infected files.[9]

Ipswitch acquired MOVEit in 2008 when the company purchased Standard Networks.[10] MOVEit Cloud was announced in 2012 as a cloud-based file transfer management software.[11] MOVEit Cloud was the first enterprise-class cloud managed file transfer software. It is scalable and can share files system-to-system, with groups, or person-to-person.[12]

In 2013, MOVEit clients were released for the iOS and Android platforms. The release included a configuration wizard, as well as email encryption.[3][13]

Ipswitch Analytics was released in 2015 to monitor and report data through the MOVEit software. The analytic data includes an activity monitor and automated report creation. Ipswitch Analytics can access data from MOVEit file transfer and automation servers.[14][15] That same year, Ipswitch Failover was released. The software can return recovery point objectives (RPO) in seconds with a recovery time objectives (RTO) of less than a minute, which increases the availability of MOVEit.[16]

2023 data breach

On 31 May 2023, Progress reported a SQL injection vulnerability in MOVEit Transfer and MOVEit Cloud (CVE-2023-34362). The vulnerability's use was widely exploited in late May 2023.[17] The 31 May vulnerability allows an attacker to access MOVEit Transfer's database from its web application without authenticating. The attacker may then be able to execute SQL statements that alter or delete entries in the database, and infer information about the structure and contents of the database.[18][19] Data exfiltration in the widespread May-June attacks by the Russian-speaking cyber crime group Cl0p may have been primarily focused on data stored using Microsoft Azure.[20] Upon discovery, Progress launched an investigation, alerted its customers of the issue and provided mitigation steps (blocking all HTTP and HTTPS traffic to MOVEit), followed by the development and release of a security patch.[21] On 15 June, another vulnerability that could lead to unauthorized access became public (CVE-2023-35708).[22]

In 2023, it was published that the 31 May 2023 zero-day vulnerability had been exploited by attackers.[23] On 7 June 2023, cyber gang Clop, believed to be Russian-based, made a blog posting saying that they had gained access to MOVEit transactions worldwide, and that organisations using MOVEit had until 14 June to contact Clop and pay a ransom, otherwise stolen information would be published. Details typically include payroll data with fields such as home addresses, National Insurance numbers, and bank details, but vary. The group said that they had information from eight UK organisations including the BBC, derived by an attack on payroll services provider Zellis. It was surmised that contact via blog post rather than email to victims might be due to the enormous number of victims, being too many to handle individually.[24]

Response

The MOVEit team has worked with industry experts to investigate the May 31 incident. Cybersecurity and Infrastructure Security Agency (CISA),[25] CrowdStrike,[26] Mandiant,[27] Microsoft,[28] Huntress[29] and Rapid7[30] have assisted with incident response and ongoing investigations.[31] Cyber industry experts[who?] have credited the MOVEit team for its response and handling of the incident by quickly providing patches, as well as regular and informative advisories that helped support rapid remediation.[32][33][34] Despite the attempts by the company to remediate the vulnerabilities, hundreds of companies across the world had exorbitant amounts of confidential information stolen due to the weaknesses in the software. The effects of the MOVEit breach are still being revealed as of November 2023. It is estimated that the stolen data will be abused for many years to come.

References

  1. ^ https://docs.progress.com/bundle/moveit-transfer-release-notes-2023/page/Whats-New-in-MOVEit-Transfer-2023.html
  2. ^ https://docs.progress.com/bundle/moveit-automation-release-notes-2023/page/Whats-New-in-MOVEit-Automation-2023.html
  3. ^ a b c Alex Woodie (September 24, 2013). "Ipswitch Adds iOS and Android Clients to MFT Suite". IT Jungle. Retrieved July 20, 2016.
  4. ^ "Managed File Transfer Software - MOVEit MFT - Ipswitch". www.ipswitch.com. Retrieved 2023-07-23.
  5. ^ "Rochester General Hospital MOVEit Case Study". HealthData Management. Retrieved July 20, 2016.
  6. ^ Chris Player (November 13, 2014). "Medibank employs Ipswitch MOVEit MFT". ARN. Retrieved July 20, 2016.
  7. ^ "Ipswitch launches new tools to protect critical and confidential date". TYN Channel. January 4, 2016. Retrieved July 20, 2016.
  8. ^ "Standard Networks releases secure transfer client". WTN News. March 24, 2004. Retrieved July 20, 2016.
  9. ^ "MOVEit Central File Transfer Management Offers Real-Time". Business Wire. April 18, 2006. Retrieved July 20, 2016.
  10. ^ Tom Jowitt (February 19, 2008). "Ipswitch gets compliance with Standard Networks buy". Network World. Retrieved July 20, 2016.
  11. ^ Brandon Butler (November 13, 2012). "File transfer systems adapting to today's cloudy conditions". Network World. Retrieved July 20, 2016.
  12. ^ "Ipswitch FIlp Transfer Launches MOVEit Cloud & MOVEit Ad Hoc Transfer". Compliance Week. November 6, 2012. Retrieved July 20, 2016.
  13. ^ Chris Talbot (November 15, 2015). "Ipswitch Adds Mobile Support to MOVEit Cloud 8.0". Talkin Cloud. Retrieved July 20, 2016.
  14. ^ Nathan Eddy (June 8, 2015). "Ipswitch Analytics Offers Auditable File Transfers". eWeek. Retrieved July 20, 2016.
  15. ^ Kathrin Jannot (April 4, 2016). "MOVEit organized file transfers from a single interface". Cyber Press. Retrieved July 20, 2016.
  16. ^ "Ipswitch Delivers Zero Downtime and No Data Loss with New Failover Solution for Managed File Transfer". APM Digest. September 23, 2015. Retrieved July 20, 2016.
  17. ^ Arghire, Ionut (2023-06-19). "MOVEit Customers Urged to Patch Third Critical Vulnerability". SecurityWeek. Retrieved 2023-06-19.
  18. ^ "NVD - CVE-2023-34362". nvd.nist.gov. Retrieved 2023-06-19.
  19. ^ "MOVEit Transfer and MOVEit Cloud Vulnerability". 5 July 2023.
  20. ^ Goodin, Dan (2023-06-06). "Mass exploitation of critical MOVEit flaw is ransacking orgs big and small". Ars Technica. Retrieved 2023-06-19.
  21. ^ "Progress Customer Community". community.progress.com. Retrieved 2023-06-19.
  22. ^ "Progress Customer Community". community.progress.com. Retrieved 2023-06-19.
  23. ^ Page, Carly (2023-06-02). "Hackers launch another wave of mass-hacks targeting company file transfer tools". TechCrunch. Retrieved 2023-06-04.
  24. ^ Tidy, Joe (7 June 2023). "BBC, BA and Boots issued with ultimatum by cyber gang Clop". BBC News. Retrieved 7 June 2023.
  25. ^ "#StopRansomware: CL0P Ransomware Gang Exploits CVE-2023-34362 MOVEit Vulnerability". June 7, 2023. Retrieved June 7, 2023.
  26. ^ Lioi, Tyler; Palka, Sean (June 5, 2023). "Movin' Out: Identifying Data Exfiltration in MOVEit Transfer Investigations". Retrieved June 5, 2023.
  27. ^ Zaveri, Nader; Kennelly, Jeremy; Stark, Genevieve (June 2, 2023). "Zero-Day Vulnerability in MOVEit Transfer Exploited for Data Theft". Retrieved June 2, 2023.
  28. ^ "Attack Surface: CVE-2023-34362 MOVEit Transfer Zero-Day Exploitation (May 2023)". June 4, 2023. Retrieved June 4, 2023.
  29. ^ Hammond, John (June 1, 2023). "MOVEit Transfer Critical Vulnerability CVE-2023-34362 Rapid Response". Retrieved June 1, 2023.
  30. ^ Condon, Caitlyn (June 1, 2023). "Rapid7 Observed Exploitation of Critical MOVEit Transfer Vulnerability". Retrieved June 1, 2023.
  31. ^ Kapko, Matt (June 14, 2023). "MOVEit mass exploit timeline: How the file-transfer service attacks entangled victims". Retrieved June 26, 2023.
  32. ^ Starks, Tim (June 7, 2023). "Cyberdefenders respond to hack of file-transfer tool". The Washington Post. Retrieved June 7, 2023.
  33. ^ "Inside the MOVEit Attack: Decrypting Clop's TTPs and Empowering Cybersecurity Practitioners". July 4, 2023. Retrieved July 4, 2023.
  34. ^ Stone, Noah (July 20, 2023). "New research reveals rapid remediation of MOVEit Transfer vulnerabilities". BitSight. Retrieved July 20, 2023.

Read other articles:

Tumpukan staples yang biasa digunakan di rumah dan di kantor Staples atau isi kokot[1] adalah sebuah pengencang dua arah, biasanya terbuat dari metal dan berbentuk seperti U yang digunakan untuk menyatukan dua atau beberapa bahan. Staples yang berukuran besar bisa digunakan bersama dengan palu atau staple gun untuk menyatukan atap, kayu, kardus dan kegunaan kelas berat lain. Staples yang lebih kecil biasanya dipasangkan dengan stapler untuk menyatukan lembaran-lembaran kertas. Tidak s...

 

 

Disambiguazione – Se stai cercando altri significati, vedi Atomo (disambigua). AtomoUna rappresentazione di un atomo di elio allo stato fondamentale. Si distinguono il nucleo (rosa) e la nube elettronica (nero). La barra nera riporta la lunghezza di un ÅngströmComposizioneElettroni e un nucleo composto da protoni e neutroni InterazioniGravitazionale, elettromagnetica, debole, forte Antiparticellaantiparticella Proprietà fisicheMassada 1,67 × 10−27 a 4,52 × 10−25 kg Carica ele...

 

 

Cari artikel bahasa  Cari berdasarkan kode ISO 639 (Uji coba)  Kolom pencarian ini hanya didukung oleh beberapa antarmuka Halaman bahasa acak Bahasa Hakka Taiwan toiˇ vanˇ hagˋ gaˊ ngiˊ / toiˇ vanˇ hagˋ faThòi-vàn Hak-kâ-ngî / Thòi-vàn Hak-fa PengucapanSixian: [tʰoi˩ van˩ hak̚˨ fa˥]Hailu: [tʰoi˥ van˥ hak̚˨ fa˩]Dapu: [tʰoi˧ van˩˩˧ kʰak̚˨˩ fa˥˧]Raoping: [tʰoi˧ van˥ kʰak̚˥ fa˨˦]Zhao'an: [tʰai˧ ban˥˧ kʰa˥ su˥]D...

Cinema of Egypt List of Egyptian films Pre 1920 1920s 1920 1921 1922 1923 19241925 1926 1927 1928 1929 1930s 1930 1931 1932 1933 19341935 1936 1937 1938 1939 1940s 1940 1941 1942 1943 19441945 1946 1947 1948 1949 1950s 1950 1951 1952 1953 19541955 1956 1957 1958 1959 1960s 1960 1961 1962 1963 19641965 1966 1967 1968 1969 1970s 1970 1971 1972 1973 19741975 1976 1977 1978 1979 1980s 1980 1981 1982 1983 19841985 1986 1987 1988 1989 1990s 1990 1991 1992 1993 19941995 1996 1997 1998 1999 2000s 20...

 

 

Bill NordhausPemenang Nobel Ekonomi 2018, Stockholm, Swedia, Desember 2018Lahir31 Mei 1941 (umur 82)Albuquerque, New Mexico, U.S.KebangsaanAmerika SerikatInstitusiYale UniversityBidangEnvironmental economicsMazhabEnvironmental economicsAlma materYale UniversityMassachusetts Institute of TechnologyPembimbingdoktoralRobert Solow[1]DipengaruhiPaul SamuelsonJames TobinPenghargaan2017 BBVA Foundation Frontiers of Knowledge Award in Climate Change[2]Informasi di IDEAS...

 

 

The SpoilersPoster untuk The SpoilersSutradaraColin CampbellAlfred E. Green (ast. sut.)ProduserWilliam Nicholas SeligDitulis olehLanier BartlettBerdasarkanThe Spoilersnovel tahun 1906oleh Rex BeachPemeranWilliam FarnumKathlyn WilliamsTom SantschiSinematograferHarry GerstadAlvin WyckoffPerusahaanproduksiSelig Polyscope CompanyDistributorGeneral Film CompanyTanggal rilis 25 Maret 1914 (1914-03-25) Durasi9 rol (1914)110 menit (perilisan tahun 1916)NegaraAmerika SerikatBahasaBisuInggrisPenda...

Championnats de Belgique de cyclisme sur route Généralités Sport Cyclisme sur route Création 1894 Périodicité Annuelle (juin) Lieu(x) Belgique Disciplines Course en ligne Contre-la-montre Palmarès Tenant du titre Remco Evenepoel Plus titré(s) Tom Steels (4) modifier Les championnats de Belgique de cyclisme sur route sont les championnats nationaux de cyclisme sur route de Belgique, organisés par la Royale ligue vélocipédique belge. Ils ont été disputés pour la première fois en...

 

 

Il miglio verdeDavid Morse, Michael Clarke Duncan e Tom Hanks in una scena del filmTitolo originaleThe Green Mile Paese di produzioneStati Uniti d'America Anno1999 Durata189 min Generedrammatico, fantastico RegiaFrank Darabont SoggettoStephen King (romanzo) SceneggiaturaFrank Darabont ProduttoreFrank Darabont, David Valdes Casa di produzioneWarner Bros., Universal Pictures, Castle Rock Entertainment, Darkwoods Productions Distribuzione in italianoUIP FotografiaDavid Tattersall MontaggioRi...

 

 

Political party in the Philippines This article needs additional citations for verification. Please help improve this article by adding citations to reliable sources. Unsourced material may be challenged and removed.Find sources: Laban ng Demokratikong Pilipino – news · newspapers · books · scholar · JSTOR (December 2019) (Learn how and when to remove this template message) Fight of Democratic Filipinos Laban ng Demokratikong PilipinoPresidentBellaflor...

Part of a series onJerusalem History Timeline City of David Second Temple Period Aelia Capitolina Middle Ages Early Muslim period Kingdom of Jerusalem Mutasarrifate British Mandate Israeli takeover of West Jerusalem Jordanian annexation of East Jerusalem Israeli annexation of East Jerusalem Sieges Before Common Era 701 BCE 597 BCE 587 BCE 63 BCE 37 BCE Common Era 70 614 637 1099 1187 1244 1834 1917 1948 Places East West Old City Temple Mount/Al-Aqsa Dome of the Rock Al-Aqsa Mosque Western Wa...

 

 

Amos de-ShalitLahir(1926-09-29)29 September 1926Yerusalem, Mandat PalestinaMeninggal2 September 1969(1969-09-02) (umur 42)IsraelKebangsaanIsraelAlmamaterUniversitas Ibrani Yerusalem ETH ZurichDikenal atasModel kulit nuklirKarier ilmiahBidangFisika nuklirInstitusiWeizmann Institute of Science Amos de-Shalit (Ibrani: עמוס דה-שליט; 29 September 1926 – 2 September 1969[1]) adalah seorang fisikawan nuklir asal Israel dan penerima Penghargaan Israel. Biog...

 

 

Russian footballer Nikita Bazhenov Bazhenov with Tom Tomsk in 2011Personal informationFull name Nikita Aleksandrovich BazhenovDate of birth (1985-02-01) 1 February 1985 (age 39)Place of birth Bolshoye Bunkovo, Noginsky District, Moscow Oblast, Russian SFSRHeight 1.78 m (5 ft 10 in)[1]Position(s) StrikerYouth career Torpedo LyubertsySenior career*Years Team Apps (Gls)2001–2004 FC Saturn Moscow Oblast 12 (5)2004–2010 FC Spartak Moscow 104 (17)2011–2016 FC Tom T...

22nd BSFC Awards December 16, 2001 Best Film: Mulholland Drive The 22nd Boston Society of Film Critics Awards, honoring the best in film in 2001, were given on 16 December 2001. Winners David Lynch, Best Director winner Brian Cox, Best Actor co-winner Denzel Washington, Best Actor co-winner Tilda Swinton, Best Actress winner Ben Kingsley, Best Supporting Actor winner Cameron Diaz, Best Supporting Actress winner Best Film: Mulholland Drive Runner-up: Apocalypse Now Redux Best Actor (TIE): Bri...

 

 

Printing and binding agency of the U.S. Federal government Government Printing Office redirects here. For other uses, see Government Printing Office (disambiguation). Government Publishing OfficeOfficial sealLogoAgency overviewFormedMarch 4, 1861JurisdictionFederal government of the United StatesHeadquarters732 North Capitol St. NWWashington, D.C.[1]MottoKeeping America Informed[2]Employees1,920[1]Annual budgetUS$126,200,000 (2012); approx. US$135 million (2011)[1&...

 

 

نهائي كأس خادم الحرمين الشريفين للأبطال 2009الحدثكأس خادم الحرمين الشريفين للأبطال 2009 الشباب الاتحاد 4 0 التاريخ2009  الملعب، الرياض → 2008 2010 ← نهائي كأس خادم الحرمين الشريفين للأبطال 2009 هي المباراة النهائية لبطولة كأس خادم الحرمين الشريفين للأبطال 2009، أقيمت في بتاريخ 15 ما�...

Asep Effendi Rektor Universitas Sangga Buana YPKPMasa jabatan2010 – 2022Pendahulu-Pengganti- Informasi pribadiLahir(1963-04-28)28 April 1963 Bandung, Jawa BaratKebangsaanIndonesiaPartai politik-Alma mater-Pekerjaan-ProfesiRektorSitus web--Sunting kotak info • L • B Dr. H. Asep Effendi, SE., M.Si., PIA., CFrA., CRBC (lahir 28 April 1963) adalah seorang Rektor di Universitas Sangga Buana YPKP. Masa Kecil Asep Effendi terlahir di lingkungan keluarga yang agamis. Sejak du...

 

 

Jean-Jacques Burlamaqui. Jean-Jacques Burlamaqui (bahasa Prancis: [byʁlamaki]; 24 Juni atau 13 Juli 1694 – 3 April 1748) adalah seorang pakar hukum dan politik asal Jenewa. Karya-karyanya meliputi: Principes du droit politique (1751), Principes du droit politique, volume kedua, 1754 Principes du droit naturel et politique (1763), volume yang menyatukan kedua karya di atas Principes du droit de la nature et des gens Suite du droit de la nature (1766) Pemikiran mengenai konstitusionalis...

 

 

Lithuanian football club Football clubFK BabrungasFull nameFutbolo klubas BabrungasFounded1935; 89 years ago (1935)GroundPlungė StadiumCapacity500Coordinates55°54′40″N 21°50′30″E / 55.91111°N 21.84167°E / 55.91111; 21.84167ChairmanAdomas ZamulskisManagerAlgis Petkus, Macauley MusgraveLeagueI Lyga2022I Lyga 6th Home colours Away colours Babrungas – river in Plungė. Futbolo klubas Babrungas, commonly known as Babrungas, is a Lithuanian f...

هذه المقالة تحتاج للمزيد من الوصلات للمقالات الأخرى للمساعدة في ترابط مقالات الموسوعة. فضلًا ساعد في تحسين هذه المقالة بإضافة وصلات إلى المقالات المتعلقة بها الموجودة في النص الحالي. (يناير 2018) الدوري البحريني الممتاز 1970–71معلومات عامةالرياضة كرة القدم البطولة الدوري الب...

 

 

  آرندال (بالنرويجية: Arendal)‏    آرندال  خريطة الموقع تقسيم إداري البلد النرويج  [1][2] خصائص جغرافية إحداثيات 58°28′00″N 8°46′00″E / 58.466666666667°N 8.7666666666667°E / 58.466666666667; 8.7666666666667   [3] المساحة 270.21 كيلومتر مربع (1 يناير 2020)[4]  الارتفاع 1 متر  �...