2023 GoAnywhere MFT zero-day — 130+ orgs (CVE-2023-0669)
Data compromised
Varies by victim; healthcare, financial data
Technical writeup
Clop exploited CVE-2023-0669 in Fortra GoAnywhere MFT. Remote code execution via admin console. 130+ organizations breached. Victims included Community Health Systems (1M), NationsBenefits (3M), Zoll Medical (1M). Data theft without ransomware deployment.
Root cause
CVE-2023-0669 zero-day; GoAnywhere MFT vulnerability.