{"id":9857,"date":"2023-03-24T21:00:48","date_gmt":"2023-03-24T21:00:48","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2023\/03\/24\/fortra-told-breached-companies-their-data-was-safe\/"},"modified":"2023-03-24T21:00:48","modified_gmt":"2023-03-24T21:00:48","slug":"fortra-told-breached-companies-their-data-was-safe","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2023\/03\/24\/fortra-told-breached-companies-their-data-was-safe\/","title":{"rendered":"Fortra told breached companies their data was safe"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\">Software maker Fortra told its corporate customers that their data was safe \u2014 even when it wasn\u2019t \u2014 following a ransomware attack on its systems, TechCrunch has learned.<\/p>\n<p>As we <a href=\"https:\/\/techcrunch.com\/2023\/03\/22\/fortra-goanywhere-ransomware-attack\/\" target=\"_blank\" rel=\"noopener\">have been reporting<\/a>, the Clop ransomware gang exploited a newly discovered bug in Fortra\u2019s GoAnywhere file transfer software, used by thousands of organizations to transfer sensitive data over the internet. The bug allowed the ransomware gang to hack in and carry out a <a href=\"https:\/\/techcrunch.com\/2023\/03\/22\/fortra-goanywhere-ransomware-attack\/\" target=\"_blank\" rel=\"noopener\">mass ransomware attack<\/a> on January 31. The Russia-linked Clop gang claimed it compromised about 130 organizations who were using the vulnerable GoAnywhere tool at the time of the ransomware attack.<\/p>\n<p>Now, new victims are coming to light.<\/p>\n<p>Consumer goods giant Procter &amp; Gamble confirmed to TechCrunch that it was \u201cone of the many companies affected by Fortra\u2019s GoAnywhere incident\u201d and that hackers had obtained some information of its employees as a result. Healthcare and wellness program provider <a href=\"https:\/\/oag.ca.gov\/ecrime\/databreach\/reports\/sb24-564649\" target=\"_blank\" rel=\"noopener\">US Wellness<\/a> also disclosed this week that consumers\u2019 personal and protected health data may have been compromised because of a third-party breach. TechCrunch has learned that US Wellness was a GoAnywhere customer at the time of the ransomware attack.<\/p>\n<p>As the number of victims grows, more details are also beginning to come to light about how Fortra handled the incident.<\/p>\n<p>TechCrunch has heard from two victim organizations that only learned that data had been exfiltrated from their GoAnywhere systems after they each received a ransom demand. Both organizations had been previously told by Fortra that their data was unaffected by the ransomware attack.<\/p>\n<p>One of the organizations told TechCrunch that they realized the situation had changed when it was contacted by the purported hackers, but said that the organization has not entered into any negotiations or paid a ransom demand.<\/p>\n<p>When asked about this by email, Fortra spokesperson Rachel Woodford would not comment but did not dispute what the two organizations had told us or that Fortra had told customers their data was safe. Fortra did not make CISO Chris Reffkin available for an interview.<\/p>\n<p>The full impact of the mass-hack resulting from the GoAnywhere vulnerability remains unknown. Fortra would not say, despite repeated requests by TechCrunch, if the company\u2019s in-house GoAnywhere systems storing customers\u2019 data were compromised during the ransomware attack.<\/p>\n<p>The Clop ransomware gang has added dozens of new victims to its dark web leak site over the past few days \u2014 including payment software startup AvidXchange, investment giant Onex, the U.K.\u2019s Pension Protection Fund, and the City of Toronto, \u2014 all of which were <a href=\"https:\/\/techcrunch.com\/2023\/03\/22\/fortra-goanywhere-ransomware-attack\/\" target=\"_blank\" rel=\"noopener\">identified by TechCrunch<\/a> as organizations that used vulnerable GoAnywhere file transfer software at the time of the breach, along with dozens of other organizations.<\/p>\n<p>It follows other additions to its leak pages, including Colombian energy giant Grupo Vanti, Australian gambling giant Crown Resorts, and Medex Healthcare.<\/p>\n<p>Fortra has not yet publicly confirmed its January breach beyond an inaccessible advisory on its website. Fortra\u2019s most recent press release on March 16 <a href=\"https:\/\/www.fortra.com\/resources\/press-releases\/fortra-takes-gold-once-again-cybersecurity-excellence-awards\" target=\"_blank\" rel=\"noopener\">announced<\/a> that the company had been awarded \u201cbest cybersecurity company\u201d by the Cybersecurity Excellence Awards, an industry award paid for by submitting companies and which Fortra <a href=\"https:\/\/cybersecurity-excellence-awards.com\/sponsorship\/\" target=\"_blank\" rel=\"noopener\">sponsors<\/a>.<\/p>\n<\/p><\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2023\/03\/24\/fortra-goanywhere-clop-ransomware\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Software maker Fortra told its corporate customers that their data was safe \u2014 even when it wasn\u2019t \u2014 following a ransomware attack on its systems, TechCrunch has learned. As we have been reporting, the Clop ransomware gang exploited a newly discovered bug in Fortra\u2019s GoAnywhere file transfer software, used by thousands of organizations to transfer [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":9858,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-9857","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/9857","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=9857"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/9857\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/9858"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=9857"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=9857"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=9857"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}