Risky Bulletin Newsletter
November 10, 2023
Risky Biz News: Clop is coming after your SysAid servers
Presented by
News Editor
The infamous Clop ransomware gang is exploiting a zero-day vulnerability in on-prem SysAid IT automation servers.
The attacks were discovered last week by SysAid's security team, and the company released a software update to patch the exploited bug.
Tracked as CVE-2023-47246, SysAid's team described the zero-day as a "path traversal vulnerability leading to code execution."