Context over chaos. Disconnected technologies, siloed data, and reactive processes can only get you so far. Protecting businesses in today’s threat landscape demands more than a set of security tools – it requires context.
That's where Avertium comes in
Security. It’s in our DNA. It’s elemental, foundational. Something that an always-on, everything’s-IoT-connected world depends on.
Helping mid-to-enterprise organizations protect assets and manage risk is our only business. Our mission is to make our customers’ world a safer place so that they may thrive in an always-on, connected world.
Best-in-class technology from our partners... backed by service excellence from Avertium.
Interested in becoming a partner?
With Avertium's deal registration, partners can efficiently and confidently connect with Avertium on opportunities to protect your deals.
Microsoft Copilot for Security analyzes and synthesizes high volumes of security data which can help healthcare cybersecurity teams do more with less.
Dive into our resource hub and explore top
cybersecurity topics along with what we do
and what we can do for you.
overview
A critical vulnerability (CVE-2024-0204) was found in Fortra’s GoAnywhere Managed File Transfer (MFT) software. CVE-2024-0204 has a CVSS score of 9.8 and allows an unauthorized user to create a new administrator account through the administration portal. This authentication bypass vulnerability is present in GoAnywhere MFT versions 7.4.0 and below, as well as 6.0.1 and above.
Despite researchers discovering the vulnerability in December 2023, it has only been recently that the cybersecurity firm Horizon3.ai released a proof-of-concept (PoC). With the PoC now available, researchers expect threat actors to exploit the vulnerability in the very near future.
Please be aware that secure file transfer tools, such as GoAnywhere MFT, are attractive targets for threat actors due to the sensitive enterprise data they handle. Fortra's GoAnywhere MFT was previously targeted by Cl0p ransomware in February 2023, and this vulnerability follows a pattern of file transfer solutions being exploited by other malicious actors. Avertium urges all affected users to apply the available patch immediately to protect their systems against potential exploitation.
INDICATORS OF COMPROMISE (IoCs)
SUPPORTING DOCUMENTATION