logo
Potential Cyber Threat Emerges As MOVEit Scanning Accelerates

Potential Cyber Threat Emerges As MOVEit Scanning Accelerates

Forbes13 hours ago

Scanning activity targeting MOVEit Transfer systems surges globally, raising fears of another ... More widespread exploitation campaign.
Progress Software's MOVEit Transfer system is back in the cybersecurity spotlight — and not for good reasons. New telemetry from GreyNoise shows a sharp and sudden surge in scanning activity, raising fears that attackers may be preparing for a fresh wave of exploitation, echoing the mass compromise campaigns of 2023.
A Sudden Shift That Demands Attention
On May 27, GreyNoise recorded a striking jump in the number of unique IPs probing MOVEit Transfer systems. Scanning activity, previously hovering below 10 IPs per day, skyrocketed to over 100. The next day, it surged to 319. Since then, daily scans have remained high, fluctuating between 200 and 300 unique IPs — a pattern that GreyNoise calls a 'significant deviation' from baseline behavior.
These aren't just idle scans. Nearly half of the probing IPs — 44% — are associated with Tencent Cloud. Others originate from Amazon AWS, Cloudflare, and Google Cloud, platforms often abused for mass-scale reconnaissance due to their ease of access and global reach.
The scans are originating primarily from the United States, but also span Germany, Japan, Singapore, Brazil, and other countries. The targets are globally distributed, with GreyNoise noting attempted access across the UK, Germany, France, and Mexico.
Echoes of 2023
MOVEit Transfer made headlines just a couple years ago when a critical SQL injection vulnerability (CVE-2023-34362) was exploited by the Cl0p ransomware group. That zero-day led to breaches at hundreds of organizations, including government agencies and major corporations. The attackers used automated scanning and mass exploitation to infiltrate unpatched instances at scale.
The current surge raises concerns that we may be witnessing a similar prelude. Attackers are known to conduct broad reconnaissance to identify unpatched or misconfigured systems before launching widespread attacks. GreyNoise's detection of sustained scanning over multiple weeks — rather than a short spike — suggests that reconnaissance is ongoing, possibly automated, and potentially linked to active threat actors preparing an operation.
But not all experts see this as a clear sign of an imminent threat. 'The increase in scanning activity targeting MOVEit Transfer systems is worth monitoring, but doesn't necessarily indicate imminent or widespread exploitation,' said Shane Barney, CISO at Keeper Security. 'This type of behavior often reflects opportunistic threat actors probing for unpatched systems – not necessarily a sophisticated adversary.'
Still, Barney acknowledged the high stakes: 'The MOVEit vulnerabilities have a history of being exploited at scale, with significant consequences, so organizations must remain vigilant.'
What to Do Now
Security leaders should act now, not later. Here's what should be prioritized:
Nivedita Murthy, senior staff consultant at Black Duck, emphasized that attackers are quick to capitalize on lapses in patching. 'Attackers are exploiting a vulnerability in outdated versions of MOVEit Transfer, emphasizing the importance of keeping software up-to-date with the latest patches,' she said.
Murthy also noted the growing role of automation in these campaigns: 'With the help of AI, attackers can automate a lot of their tasks and run attacks faster while making them harder to detect.'
She recommends a layered defense, starting with visibility: 'Security teams should inventory all instances of the software using SCA tools, implement additional controls such as authentication and authorization, and regularly scan their software inventory for risks.'
Maintaining accurate Software Bills of Materials, she added, is also critical to managing risk and 'helps confidently unleash business innovation in an era of accelerating risk.'
Cloud Platforms as Recon-as-a-Service
There's also a broader trend at play: cloud infrastructure is now a top tool for adversaries. Spinning up virtual machines on public cloud services takes minutes and costs pennies. That makes them perfect for running scanning scripts or launching low-and-slow enumeration attacks while obscuring true attribution.
Tencent Cloud's appearance in this story is notable, not because the company is complicit, but because of the volume. With nearly half of scanner IPs traced back to Tencent's ASN, it's clear adversaries see value in its global footprint and accessibility.
This development calls for better coordination between cloud providers and the security community to detect, report, and tear down abuse infrastructure before it's weaponized.
A Warning, Not Yet a Breach
While the scanning activity may not yet point to a coordinated exploit campaign, the patterns are uncomfortably familiar. Last year's MOVEit breaches didn't start with explosions — they started with quiet reconnaissance.
'Ensuring patches are applied, systems aren't unnecessarily exposed, and privileged access is tightly controlled are all foundational steps that help reduce risk,' Barney advised. 'While cybercrime groups may attempt to speed up and scale campaigns with automation or AI, core defense strategies remain the same: establish a zero-trust architecture, manage privileged access, and use real-time threat detection.'
This isn't cause for panic…yet. But it is a call to be prepared. Threat actors are scanning. Whether or not they act depends, in part, on whether defenders leave the door open.

Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

The Moto G Stylus 2025 gets so much right that I don't miss my flagship
The Moto G Stylus 2025 gets so much right that I don't miss my flagship

Yahoo

time8 minutes ago

  • Yahoo

The Moto G Stylus 2025 gets so much right that I don't miss my flagship

It's been two months since I reviewed the Moto G Stylus 2025, and I'm still impressed. I picked the phone back up last week to see what stood out to me after recently using flagship phones like the Motorola Razr Ultra and Samsung Galaxy S25 Ultra. No one would confuse those more expensive devices with the midrange power found on the Moto G Stylus 2025, but you'd be surprised. I expected compromises when moving back to the Moto G Stylus, and they were there. But I was unbothered by them. Highlighting value in midrange and budget phones is what I enjoy most about my job, and the Moto G Stylus 2025 is a prime example of how much you can get for your money. If you're unsure which smartphone you should buy next, here's why this midrange Moto should be near the top of your list for $400. Motorola made efforts to improve durability across its entire 2025 lineup, and the Moto G Stylus is no exception. I would never confuse it with a flagship phone made from premium materials, but it can withstand a few drops without breaking apart. This year's G Stylus is IP68 dust- and water-resistant and MIL-STD-810H compliant for drop testing. Your best bet for protecting your phone is still a case, but sometimes I want to enjoy the design of my device, and Motorola has made that safer this year. I'm using the Samsung Galaxy A36 for an upcoming review. It features a high-quality AMOLED panel, but the Moto G Stylus 2025 has a vibrancy and brightness it can't match. Motorola fitted the G Stylus with a fantastic 6.7-inch OLED screen with a 1220 x 2712 Super HD resolution and a 120Hz refresh rate. It looks incredible, and I can say it's the most impressive display I've seen on a device under $400. It becomes even more remarkable when I consider that the Moto G Stylus will be available for most of its lifecycle for around $300 new. Moto puts the best displays on budget and midrange devices, and the G Stylus 2025 proves this. I'm pleased with the performance I get from the Snapdragon 6 Gen 3 in the Moto G Stylus. The phone's 8GB of RAM also keeps things running smoothly, and I'm glad Motorola recognizes the importance of more RAM in budget phones. The aforementioned Galaxy A36 only has 6GB of RAM, and even with the same powerplant, I can tell the difference in performance — the G Stylus is snappier. If you're a big gamer, you might consider spending a few extra dollars on the OnePlus 13R or an older flagship, but for productivity apps and daily tasks, the G Stylus is excellent. I love that I can easily stretch my Moto G Stylus 2025's battery life for two days if needed, often ending a second day of mixed use with 20% battery remaining. Software's still a mixed bag with the Moto G Stylus, but it has nothing to do with Hello UI or Android 15. I enjoy Moto's flavor of Android, and the company does an excellent job balancing added features and a stock experience. I wish the company didn't lean so heavily on AI, as I think it's wasted effort at this point, but overall, Moto does a solid job. Unfortunately, software support is weak, and although I've made peace with it, it remains a negative aspect of the phone. You might not care, and if you're trading your phone in after two or three years, taking advantage of the next juicy Motorola carrier deal, it's not something that would prevent you from making a purchase. I love that I can easily stretch my Moto G Stylus 2025's battery life for two days if needed, often ending a second day of mixed use with 20% battery remaining. Its 5,000mAh cell combined with a power-efficient Snapdragon 6 Gen 3 does the job, and I'm still getting similar performance two months later. The 68W wired charging helps me top off quickly, and the 15W wireless charging is an unexpected perk from a Motorola device in this price range. I'm impressed with the shots I get from the 50MP primary sensor on the G Stylus. Images are saturated and crisp in good lighting. Sure, the 13MP ultrawide photos fall off, but the 50MP main camera makes up for it, giving excellent, Instagram-ready photos that'll please your friends. It's not a Pixel, but I'm not expecting it to be, especially if I can grab one on a carrier deal or a sale later in the year. More people should consider using budget and midrange Motorola phones. The company does a fantastic job blending value and performance, and we need more competition here in the US. I promise that Samsung and Google aren't the only Android manufacturers making solid smartphones, and the Moto G Stylus 2025 is an excellent opportunity to break the cycle and try something new.

Bitcoin Soars, Altcoins Fade in $300 Billion Crypto Shakeout
Bitcoin Soars, Altcoins Fade in $300 Billion Crypto Shakeout

Yahoo

time15 minutes ago

  • Yahoo

Bitcoin Soars, Altcoins Fade in $300 Billion Crypto Shakeout

(Bloomberg) -- On the face of it, 2025 looks like a banner year for crypto: Bitcoin hitting a record, an industry-boosting US president whose family is venturing headlong into the sector, and key legislation widely expected to be passed by Congress. Philadelphia Transit System Votes to Cut Service by 45%, Hike Fares Squeezed by Crowds, the Roads of Central Park Are Being Reimagined Sao Paulo Pushes Out Favela Residents, Drug Users to Revive Its City Center Sprawl Is Still Not the Answer Mapping the Architectural History of New York's Chinatown But look beyond the bullish headlines and the rally in Bitcoin, and a vastly different landscape comes into view. Most of the so-called altcoins once touted as competitors to the original cryptoasset are nursing steep declines, with more than $300 billion of market value wiped out so far this year. The sea of red points to a wider malaise that's forcing parts of the industry to confront existential questions. Crypto was imagined by early enthusiasts as a universe where a host of coins competed for investor money, offering a diverse set of use cases. But as Bitcoin reigns supreme, that's giving way to predictions that large swathes of the sector will become a digital wasteland. 'I think they're just going to die, frankly,' Nick Philpott, co-founder of trading platform Zodia Markets, said of altcoins. 'They'll just wither away. Technically, a lot of this stuff will just sit there and gather dust in perpetuity.' Bitcoin's share of the total market value of cryptoassets has climbed by nine percentage points this year to 64%, the highest since January 2021, according to CoinMarketCap. Back then, cryptocurrencies were a largely unregulated space, crypto lending was roaring with few safeguards and nonfungible tokens were just starting to take off. In sharp contrast, altcoins — the catch-all term for all digital assets outside of Bitcoin and stablecoins — are faltering. A MarketVector index tracking the bottom half of the largest 100 digital assets, which more than doubled in the aftermath of Donald Trump's Nov. 5 election victory, has since given up all those gains and is down around 50% in 2025. With Bitcoin soaking up the bulk of capital flows from investors in exchange-traded funds, other parts of the market are increasingly left behind. Even Ether, the second-largest cryptocurrency, remains about 50% below its all-time high after a modest rebound fueled by inflows to spot ETFs investing in the token. 'Historically, Bitcoin's moved and then that's passed down into altcoins,' said Jake Ostrovskis, an OTC trader at Wintermute. 'We've not really seen that yet this cycle.' Crypto is no stranger to mass extinction events. The 2022 market crash, punctuated by the implosions of algorithmic stablecoin TerraUSD and Sam Bankman-Fried's FTX exchange, led to the demise of hundreds of projects. Thousands of coins still exist on their blockchains, with little or no activity — relegated to the status of 'ghost chains' in crypto parlance. What's different this time is that crypto is becoming a more regulated, institutionally-driven marketplace, and that stablecoins appear to be the only tokens with a real shot at achieving means-of-payment status, due to the fact that they eliminate volatility. In the past year alone, the market value of stablecoins has swelled by $47 billion, and some of the world's largest banks are entering the field. The Wall Street Journal reported this month that Inc. is studying a potential stablecoin. That's putting pressure on altcoin projects to find ways to shore up their status and appeal to a wider base of investors. 'I've talked to a couple of projects that have been thinking about merging foundations, putting it up for governance, saying, 'Hey, we can now be governed under this other authority' — that authority being another altcoin community,' said Kanyi Maqubela, managing partner at venture capital firm Kindred Ventures. The shifting tides are also reflected in corporate behavior. Modeled on Michael Saylor's Strategy, a new breed of Bitcoin accumulators has emerged. In April, a special-purpose acquisition company affiliated with Cantor Fitzgerald LP partnered with Tether Holdings SA and SoftBank to launch Twenty One Capital Inc., seeded with nearly $4 billion in Bitcoin. The Trump family, which is also getting involved in Bitcoin mining, has raised $2.3 billion via Trump Media & Technology Group Corp. to create a Bitcoin treasury. While similar vehicles have been set up recently to accumulate smaller tokens like Ether, Solana and BNB, they are much smaller. Glimmers of Hope Not all altcoins are floundering. Tokens like Maker and Hyperliquid that are linked to thriving decentralized-finance protocols have notched big gains this year. 'There's certainly a subset of the market doing incredibly well — generally companies with real businesses, real revenues, and those revenues are being used to buy back tokens,' said Jeff Dorman, chief investment officer of digital asset investment firm Arca. There's also the prospect of more favorable regulations. The potential for US Securities and Exchange Commission approval of ETFs backed by coins like Solana are stirring hopes of wider adoption. Another possible catalyst is the Digital Asset Market Clarity (CLARITY) Act, informally referred to as crypto's market structure bill. The CLARITY Act aims to provide a comprehensive regulatory framework, including delineating responsibilities between the Commodity Futures Trading Commission and the SEC. 'The Clarity Act has the potential to do for altcoins what ETFs did for Bitcoin and Ethereum: provide the regulatory legitimacy that unlocks real institutional capital,' said Ira Auerbach, a senior executive at Offchain Labs. Yet according to Maqubela, the issue ultimately boils down to utility. He compares Bitcoin to gold and Ether to copper — the former has a capped final supply and the latter's blockchain underpins much of crypto's functionality — and says most altcoins are stuck in a sort of twilight zone, underpinned by big promises and not much else. 'I think a lot of them are going to whittle down to zero because they were driven by speculation without that mimetic value like Bitcoin, and they tried to be utilitarian without achieving any real scale,' he said. America's Top Consumer-Sentiment Economist Is Worried How to Steal a House Inside Gap's Last-Ditch, Tariff-Addled Turnaround Push Apple Test-Drives Big-Screen Movie Strategy With F1 Does a Mamdani Victory and Bezos Blowback Mean Billionaires Beware? ©2025 Bloomberg L.P. Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data

2026 Ram 2500 Heavy Duty Lineup Gains New "Sport Trims" Mirroring Light Duty Offerings
2026 Ram 2500 Heavy Duty Lineup Gains New "Sport Trims" Mirroring Light Duty Offerings

Motor Trend

time40 minutes ago

  • Motor Trend

2026 Ram 2500 Heavy Duty Lineup Gains New "Sport Trims" Mirroring Light Duty Offerings

If you're looking for more interesting pickup trucks, 2025 has been the year for you. Ford recently expanded the sporty Lobo package to the F-150 from the smaller Maverick, GMC's adding an AT4 off-road version of its all-electric Sierra, and now Ram—after bringing the Hemi V-8 back to its 1500 lineup—is expanding both the Warlock and Black Express trims to the 2500 Heavy Duty truck line. Ram refers to these trims as their 'Sport Truck' options, but maybe don't think too hard about how any Heavy Duty truck can be 'sporty.' The 2026 Ram 2500 lineup introduces the Black Express and Warlock sport trims, based on the affordable Tradesman model. Both feature powerful engines and distinct styling, with prices starting at $53,735 and $57,165, respectively. Available for order, deliveries begin in Q3 2025. This summary was generated by AI using content from this MotorTrend article Read Next What will be great news to these potential owners is that both of these 2026 Ram 2500 sport trims are based on the affordable Tradesman model and slot below the Rebel HD in the HD hierarchy. Both trims can come with either the 6.4-liter gas-fed Hemi V-8 with 405 hp and 429 lt-ft of torque or the Cummins 6.7-liter turbodiesel with 430 hp and 1,075 lb-ft of torque. Either engine will also come with the Torqueflite HD eight-speed automatic transmission. Both get Crew Cab bodies that will come in Diamond Black, Bright White, Granite Crystal, Silver Zynith, Forged Blue, Flame Red, Ceramic Grey, and Molten Red. They will both also come with power adjustable Convex tow mirrors, 20-inch wheels, cloth bench seats, and cloth carpet as standard. From here, the Black Express and Warlock deviate. The 2026 2500 Black Express is offered in rear- or four-wheel drive with a long or short bed, making it a bit more tailored to a working environment while still being a 'Sport Truck.' The body features a sport performance hood and body-color bumpers and grille surround. Along the rocker panels will be a set of black cab-length side steps while the 20-inch wheels will be finished in black. Inside drivers and passengers will see carpeted floor mats while the driver will have added assurance while parking with the standard front and rear parking sensors. In all, the Black Express will add a very reasonable $2,495 to the cost of the 2026 2500 Tradesman for a starting price of $53,735. The 2026 2500 Warlock is only available with four-wheel drive and the short bed, which wears 'Warlock' decals on its bedsides. The grille surround, flares, and bumpers are all finished in black, while the 20-inch diamond cut wheels are wrapped in 34-inch Goodyear Duratrac A/T tires and the transfer case gets a skid plate. Oddly, the Warlock doesn't get any sort of step bar or rock slider option for its rocker panels, though it is possible such pieces would be available through Mopar later on. It's also mechanically distinguished from both the standard Tradesman and the Black Express thanks to a standard limited slip rear differential, Bilstein dampers tuned for both pavement and off-roading, and hill descent control. Inside, the major difference comes in the form of all-weather floor mats for front and rear bench seat occupants. This also means that the price of the Warlock is higher than the Black Express, boosting the price of a Tradesman by $2,995 to a starting ask of $57,165. If either of these trims tickle your fancy, you can order these 2026 Ram 2500 Tradesman-based Black Express or Warlock right now and it should arrive at your dealer by the third quarter of this year, after being assembled at the Saltillo, Mexico plant.

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store