Year2023 |
Month |
Reference number20230111 |
Impact areaShore |
Incident locationUSA |
Incident countryUSA |
Victim countryUSA |
Victim identityEmerson |
Victim TypeCompany office |
MethodRansomware |
In 2023, Emerson in the USA was targeted by the CL0P Ransomware Gang. The attackers exploited a vulnerability in Progress Software's MOVEit Transfer, using a web shell named LEMURLOOT to steal data from MOVEit Transfer databases. The CISA and FBI released a joint Cybersecurity Advisory providing indicators of compromise and tactics identified through FBI investigations. IT network defenders are encouraged to review the advisory and implement recommended mitigations to reduce the risk of compromise. This advisory is part of the ongoing #StopRansomware effort to help organizations protect against ransomware threats.