Termite Takes a Bite: Cleo’s File Transfer Software Under Siege by Ransomware Attacks

Ransomware group Termite is back, targeting Cleo’s file transfer software with a zero-day vulnerability. Researchers report at least 10 victims, and the number may be higher. Cleo scrambles to patch the flaw, while experts suggest hiding affected systems behind a firewall to avoid becoming an unwilling participant in Termite’s latest heist.

Pro Dashboard

Hot Take:

When “Termite” isn’t busy gnawing through your wooden porch, it’s out there munching on your digital infrastructure like a buffet. Forget pest control, it’s time for pest prevention on your servers!

Key Points:

  • Ransomware group “Termite” is exploiting a zero-day vulnerability in Cleo’s file transfer software.
  • The attacks have targeted multiple sectors, including consumer products and food industries.
  • Huntress Labs identified the vulnerability as CVE-2024-50623, affecting versions of Cleo Harmony, VLTrader, and LexiCom.
  • Cleo is working on a new patch, while organizations are advised to mitigate exposure by hiding vulnerable systems behind a firewall.
  • Termite is being compared to the notorious Cl0p ransomware group due to similar operational tactics.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?