Multiple ConnectWise partners have had their customers hit with a ransomware attacks.
It was through a software flaw that left several end users compromised.
There was an MSP encrypted which is what prompted the company to release the hotfix and notify users.
TPRM report: https://scoringcyber.rankiteo.com/company/connectwise
"id": "con1166123",
"linkid": "connectwise",
"type": "Ransomware",
"date": "06/2020",
"severity": "85",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'customers_affected': 'Multiple',
'industry': 'Technology',
'name': 'ConnectWise',
'type': 'Software Company'}],
'attack_vector': 'Software Flaw',
'description': 'Multiple ConnectWise partners have had their customers hit '
'with ransomware attacks through a software flaw that left '
'several end users compromised. An MSP was encrypted, '
'prompting the company to release a hotfix and notify users.',
'impact': {'systems_affected': ['Multiple End Users', 'MSP']},
'motivation': 'Financial Gain',
'response': {'remediation_measures': ['Released Hotfix', 'Notified Users']},
'title': 'Ransomware Attacks on ConnectWise Partners',
'type': 'Ransomware',
'vulnerability_exploited': 'Software Flaw'}