FIN7/Carbon Spider Attacks Veeam Backup Servers

Robinson+Cole Data Privacy + Security Insider
Contact

Researchers at WithSecure cybersecurity firm have seen two malware attacks against Veeam Backup and Replication servers believed to be initiated by cybercrime group FIN7, also known as Carbon Spider, which has also been linked to Darkside, BlackMatter, and BlackCat/ALPHV ransomware variants.

The WithSecure investigators believe that the attacks may be part of a larger campaign, but that the scope of the attack is limited. Nonetheless, because of the sophistication of FIN7, WithSecure recommends that companies using Veeam’s solutions follow Veeam’s recommendations and guidelines to patch and configure their backup servers against a recently discovered vulnerability as outlined in Kb4424: CVE-2023-27532 and watch for signs of compromise.

[View source.]

DISCLAIMER: Because of the generality of this update, the information provided herein may not be applicable in all situations and should not be acted upon without specific legal advice based on particular situations.

© Robinson+Cole Data Privacy + Security Insider | Attorney Advertising

Written by:

Robinson+Cole Data Privacy + Security Insider
Contact
more
less

Robinson+Cole Data Privacy + Security Insider on:

Reporters on Deadline

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
Custom Email Digest
- hide
- hide