Clop Ransomware Attack on Emerson

Year

2023

Month

Reference number

20230111

Impact area

Shore

Incident location

USA

Incident country

USA

Victim country

USA

Victim identity

Emerson

Victim Type

Company office

Method

Ransomware

Summary:

In 2023, Emerson in the USA was targeted by the CL0P Ransomware Gang. The attackers exploited a vulnerability in Progress Software's MOVEit Transfer, using a web shell named LEMURLOOT to steal data from MOVEit Transfer databases. The CISA and FBI released a joint Cybersecurity Advisory providing indicators of compromise and tactics identified through FBI investigations. IT network defenders are encouraged to review the advisory and implement recommended mitigations to reduce the risk of compromise. This advisory is part of the ongoing #StopRansomware effort to help organizations protect against ransomware threats.

Reference URL

https://www.cisa.gov/news-events/alerts/2023/06/07/cisa-and-fbi-release-stopransomware-cl0p-ransomware-gang-exploits-moveit-vulnerability