Kiteworks has told customers to consider a precautionary shutdown window after receiving credible threat intelligence from law enforcement that a threat actor may target some customer systems, according to reporting by TechCrunch.

The file-transfer vendor said the notice was preventative and that it was not aware of a compromise of Kiteworks systems. Its CISO, Frank Balonis, said customers were notified directly while the company and law-enforcement partners investigated the matter.

Kiteworks recommended that customers run the latest 9.5.1 release, which it says addresses known vulnerabilities. The company’s reported customer communication cited concern about possible exploitation of vulnerabilities that may not yet be known to the vendor. It did not identify the warning source or an alleged threat actor.

For defenders, the immediate takeaway is operational: identify internet-facing Kiteworks deployments, confirm the installed version, review vendor communications and decide whether the proposed shutdown window is appropriate for the organization’s risk and continuity requirements. Teams should preserve relevant logs and verify recovery and incident-response paths before making availability changes.

Source: TechCrunch, “Kiteworks urges customers to shut down their servers amid ‘imminent’ threat of cyberattack”.

By Allan