Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the neve domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /var/www/vhosts/sigmacybersecurity.com/httpdocs/wp-includes/functions.php on line 6114
MOVEit mayhem 3: “Disable HTTP and HTTPS traffic immediately” - Sigma Cyber Security
Skip to content

MOVEit mayhem 3: “Disable HTTP and HTTPS traffic immediately”

is a commonly used HTML tag for creating sections or divisions in a web page. However, the tag has been in the spotlight recently due to vulnerabilities in the file-sharing software MOVEit Transfer, developed by Progress Software. Hackers have been using a zero-day exploit to break into servers running MOVEit’s web front-end, and gaining access to databases without needing a password. Progress Software has issued three warnings in quick succession, urging customers to disable HTTP and HTTPS traffic to MOVEit Transfer immediately. The company has also released patches to address the vulnerabilities.

The command injection bugs can only be triggered via MOVEit’s web-based portal, meaning web-based access needs to be disabled to safeguard the environment. However, SFTP and FTP/s protocols will continue to work as normal. Progress Software has advised customers to disable all HTTP and HTTPs traffic to their MOVEit Transfer environment, modify firewall rules to deny HTTP and HTTPs traffic to MOVEit Transfer on ports 80 and 443, and wait for the patch. The company has also warned that users will not be able to log on to the MOVEit Transfer web UI, and some tasks and APIs will not work until HTTP and HTTPS traffic is enabled again.

Key points:

– The

tag is commonly used in HTML for creating sections or divisions in a web page.
– MOVEit Transfer, a file-sharing software developed by Progress Software, has been vulnerable to zero-day exploits.
– Hackers have been accessing databases without needing a password via the web front-end.
– Progress Software has issued three warnings, urging customers to disable HTTP and HTTPS traffic to MOVEit Transfer immediately.
– SFTP and FTP/s protocols will continue to work as normal.

Leave a Reply

Your email address will not be published. Required fields are marked *