{"id":32989,"date":"2019-11-18T02:39:41","date_gmt":"2019-11-18T07:39:41","guid":{"rendered":"http:\/\/blog.cybercon1.com\/?p=32989"},"modified":"2019-11-18T02:39:41","modified_gmt":"2019-11-18T07:39:41","slug":"connectwise-warns-of-ongoing-ransomware-attacks-targeting-its-customers","status":"publish","type":"post","link":"https:\/\/blog.cyberconservices.com\/index.php\/2019\/11\/18\/connectwise-warns-of-ongoing-ransomware-attacks-targeting-its-customers\/","title":{"rendered":"ConnectWise warns of ongoing ransomware attacks targeting its customers"},"content":{"rendered":"\n<p> By&nbsp;<a href=\"https:\/\/www.zdnet.com\/meet-the-team\/us\/catalin.cimpanu\/\">Catalin Cimpanu<\/a> &#8211; <a rel=\"noreferrer noopener\" href=\"https:\/\/www.connectwise.com\/\" target=\"_blank\">ConnectWise<\/a>, a Florida-based company that provides remote IT management solutions, is warning customers that hackers are targeting its software to gain access to client networks and install <strong>ransomware<\/strong>.<\/p>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"alignleft size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/www.cyberconservices.com\/wp-content\/uploads\/2019\/11\/ConnectWiseLogo.png\" alt=\"\" class=\"wp-image-32990\" width=\"370\" height=\"94\"\/><\/figure><\/div>\n\n\n\n<p>ConnectWise Automate is a software package that lets IT admins manage a company&#8217;s computer fleet and other IT assets from a central location. It&#8217;s a classic remote access\/management solution that many large companies use when they have assets spread across a large number of locations.<\/p>\n\n\n\n<p>The software is available in a cloud-based offering, but also as on-premise servers, for more secure setups.<\/p>\n\n\n\n<p>In a security alert sent out this week, ConnectWise said hackers are targeting on-premise Automate systems so they can take over servers and then deploy <strong>ransomware<\/strong> across a company&#8217;s entire computer fleet.<\/p>\n\n\n\n<iframe style=\"width:120px;height:240px;\" align=\"right\" marginwidth=\"0\" marginheight=\"0\" scrolling=\"no\" frameborder=\"0\" src=\"\/\/ws-na.amazon-adsystem.com\/widgets\/q?ServiceVersion=20070822&#038;OneJS=1&#038;Operation=GetAdHtml&#038;MarketPlace=US&#038;source=ss&#038;ref=as_ss_li_til&#038;ad_type=product_link&#038;tracking_id=cyberconservi-20&#038;language=en_US&#038;marketplace=amazon&#038;region=US&#038;placement=B01I5WHNBS&#038;asins=B01I5WHNBS&#038;linkId=7114fddba5a9c5b76d2c8b3ae8b651dd&#038;show_border=true&#038;link_opens_in_new_window=true\"><\/iframe>\n\n\n\n<p>&#8220;There are recent reports of malicious actors targeting open ports for [ConnectWise] Automate&#8217;s on-premises application to introduce ransomware,&#8221; a ConnectWise spokesperson told ZDNet in an email today.  <a href=\"https:\/\/www.google.com\/url?rct=j&amp;sa=t&amp;url=https:\/\/www.zdnet.com\/article\/connectwise-warns-of-ongoing-ransomware-attacks-targeting-its-customers\/&amp;ct=ga&amp;cd=CAEYCCoSODIzMTQzMDY4OTI0ODM4ODI5MhpmOTVkN2Q1Nzc1OTJkZTIxOmNvbTplbjpVUw&amp;usg=AFQjCNG0tyeSjJe7QStIBR9Q6YtHgp4cqQ\">Read On: <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>By&nbsp;Catalin Cimpanu &#8211; ConnectWise, a Florida-based company that provides remote IT management solutions, is warning customers that hackers are targeting its software to gain access to client networks and install ransomware. ConnectWise Automate is a software package that lets IT <span class=\"excerpt-dots\">&hellip;<\/span> <a class=\"more-link\" href=\"https:\/\/blog.cyberconservices.com\/index.php\/2019\/11\/18\/connectwise-warns-of-ongoing-ransomware-attacks-targeting-its-customers\/\"><span class=\"more-msg\">Continue reading &rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[636],"tags":[637],"class_list":["post-32989","post","type-post","status-publish","format-standard","hentry","category-ransomware","tag-ransomware"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack-related-posts":[],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts\/32989","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/comments?post=32989"}],"version-history":[{"count":0,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts\/32989\/revisions"}],"wp:attachment":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/media?parent=32989"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/categories?post=32989"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/tags?post=32989"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}