ConnectWise compromised by 'sophisticated' nation state
Briefly

ConnectWise is dealing with a security breach attributed to a sophisticated nation-state actor, impacting a small number of its customers using the ScreenConnect management tool. Major brands like Panasonic and Honeywell are among those affected, raising alarms about supply-chain vulnerabilities. In response, ConnectWise has enlisted the help of Mandiant for a forensic investigation and has enhanced its security protocols. Despite the breach, no further suspicious activities were reported. One dissatisfied customer voiced their concerns on Reddit, mentioning a cryptic notification from ConnectWise and highlighting the ongoing FBI investigation into the matter.
ConnectWise has launched an investigation into a breach by a nation-state actor affecting a small number of customers using its ScreenConnect tool.
Mandiant has been engaged to lead the forensic investigation, while ConnectWise has heightened its security measures and coordinated with law enforcement.
The breach has raised concerns as it potentially impacts well-known customers like Panasonic and Honeywell, underlining the risk of supply-chain attacks.
An affected user expressed frustration over the vague communication from ConnectWise regarding the breach's details, including when it occurred and the extent of the compromise.
Read at Theregister
[
|
]