The Kaseya/REvil Attack Explained
bugcrowd.com | blog | #supply-chain | #zero-day | #incident-response | #ransomware | #kaseya | #revil | #msp
Summary
Attackers used a zero-day auth bypass in internet-facing Kaseya VSA servers to push REvil ransomware to managed systems. Kaseya urged shutting VSA down and released a detection tool.
- Published
- Collected
Skip to content