Skip to main content
All Threat Actors
🇷🇺

Cl0p

Also known as: TA505, Clop, FIN11

Ransomware/extortion. MOVEit, GoAnywhere, Accellion mass exploitation campaigns.

Origin: Russia
Targets
financialretailtechnologyhealthcare

Associated Intelligence

MOVEit Automation Resource Allocation Vulnerability

A vulnerability in Progress Software's MOVEit Automation allows for excessive resource allocation without limits or throttling, affecting versions before 2025.0.11 and from 2025.1.0 before 2025.1.7. Users of these versions should update to a patched version to mitigate the issue.

20/5/2026Medium

MOVEit Automation Vulnerability

A vulnerability in Progress Software's MOVEit Automation allows unauthorized access to sensitive data due to incorrect default permissions. Users of MOVEit Automation versions before 2025.0.11 and from 2025.1.0 before 2025.1.7 are affected. To mitigate this issue, users should update to the latest

20/5/2026Medium

MOVEit Automation Vulnerability

20/5/2026Medium

MOVEit Automation Vulnerability

A vulnerability in Progress Software's MOVEit Automation allows for uncontrolled memory allocation, potentially affecting users of the software. Those using versions before 2025.0.11 or

20/5/2026Medium

Progress Patches MOVEit WAF, LoadMaster

Progress has released patches for multiple vulnerabilities in MOVEit WAF and LoadMaster, which could be exploited

21/4/2026High