← Fortra

2023 GoAnywhere MFT zero-day — 130+ orgs (CVE-2023-0669)

2023 Unknown records affected Share on X

Data compromised

Varies by victim; healthcare, financial data

Technical writeup

Clop exploited CVE-2023-0669 in Fortra GoAnywhere MFT. Remote code execution via admin console. 130+ organizations breached. Victims included Community Health Systems (1M), NationsBenefits (3M), Zoll Medical (1M). Data theft without ransomware deployment.

Root cause

CVE-2023-0669 zero-day; GoAnywhere MFT vulnerability.

References