2023 Honeywell — Progress MOVEit Transfer exploitation; Honeywell confirmed unauthorized access and supplier knock-on risk
Data compromised
Personally identifiable information referenced in Honeywell’s public statement and follow-on consumer notices.
Technical writeup
Honeywell published a MOVEit-specific statement describing unauthorized access to Honeywell’s own MOVEit instance and warning that suppliers using MOVEit might compromise Honeywell-held data; the page was updated through September 2023.
Root cause
Cl0p-linked exploitation of MOVEit Transfer vulnerabilities (per corporate statement aligned with CISA advisories).