Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Facebook found liable as TikTok settles for $100m over user safety | Social Media News

    September 26, 2026

    At Meta Connect, the company’s smart glasses were everywhere

    September 26, 2026

    ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

    September 26, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Facebook found liable as TikTok settles for $100m over user safety | Social Media News
    • At Meta Connect, the company’s smart glasses were everywhere
    • ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw
    • Swiss bank shields Bitget institutions while retail funds freeze
    • NASA Tests Dual Mode Propulsion CubeSat Ahead of Launch
    • Earth life support systems are flashing red, warns 2026 Planetary Health Check
    • Arts Council England doesn’t need ‘swagger’, it needs reform | Arts Council England
    • Is photo of Donald and Melania Trump frowning real?
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Saturday, September 26
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Kiteworks urges 6-hour server shutdown over potential zero-day attacks

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 26, 2026 Cybersecurity No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Secure file-sharing software company Kiteworks is urging customers worldwide to temporarily shut down their servers on Saturday for a six-hour window after receiving threat intelligence warning of a potentially imminent cyberattack.

    According to German technology publication Heise, Kiteworks CISO Frank Balonis emailed customers warning that the company had received “credible threat intelligence from law enforcement indicating an attack on Kiteworks systems may be imminent this weekend.”

    “We strongly recommend you shut down your Kiteworks system for six hours,” the notification reportedly states.

    Heise says the shutdown window applies to customers worldwide, with affected time zones ranging from Australian Eastern Standard Time (AEST) to Pacific Daylight Time (PDT).

    In Central Europe, customers were instructed to shut down Kiteworks systems between 4:00 a.m. and 10:00 a.m. on Saturday, September 26. In New York, the shutdown window would be from 10:00 p.m. Friday to 4:00 a.m. Saturday.

    The company reportedly recommends shutting down the servers before the scheduled window and says customers should take systems offline even if they are not directly accessible from the Internet.

    The company confirmed the warning to BleepingComputer, stating it received intelligence from federal authorities that a threat actor may attempt to target some customer systems.

    “Kiteworks received credible threat intelligence from federal intelligence authorities indicating that a threat actor may attempt to target some Kiteworks systems for customers,” the company told BleepingComputer.

    “Out of an abundance of caution, we notified customers directly and recommended a precautionary shutdown window while we and our law enforcement partners work through the matter.”

    Kiteworks stressed that the warning is precautionary rather than a response to a confirmed breach.

    “We are not aware of any compromise of Kiteworks systems, and this advisory is preventative rather than a response to a confirmed breach,” the company said.

    “All known vulnerabilities are addressed in our current release, 9.5.1, and we continue to recommend customers run the latest version.”

    Potential zero-day concerns

    While Kiteworks has not confirmed that attackers are exploiting an unknown vulnerability, Heise reports that Kiteworks customer support said the shutdown recommendation is intended to protect customers against potential zero-day attacks.

    “The reason we’re asking you to shut down the servers is to protect against any potential zero-day attacks,” Kiteworks support reportedly told Heise when the publication contacted the company to verify the warning.

    However, neither the statement provided to BleepingComputer nor the customer notification quoted by Heise confirms that a zero-day vulnerability has been discovered or exploited.

    Instead, Kiteworks says all currently known vulnerabilities are fixed in version 9.5.1 and describes the shutdown as a precaution based on intelligence received from authorities.

    Kiteworks develops secure file-transfer and communications products used by government organizations, financial institutions, and enterprises.

    Because secure file-sharing platforms commonly store sensitive documents, they are a valuable target for cybercriminals who conduct data-theft extortion attacks.

    While it is not known which threat actor is linked to these potential attacks, the Clop extortion gang has a long history of targeting enterprise platforms in data-theft attacks, including Accellion FTA, GoAnywhere MFT, SolarWinds Serv-U FTP, Cleo, and MOVEit Transfer.

    The U.S. Department of State now offers a $10 million reward for any information linking the cybercrime gang’s attacks to a foreign government.


    article image

    Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.

    Save your seat

    6hour attacks Kiteworks potential server shutdown urges ZeroDay
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

    Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware

    F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers

    Attackers Exploit WordPress CVE-2026-87902 Within Hours of Disclosure

    TeamFiltration Campaign Compromises Seven Microsoft 365 Accounts Using Default Passwords

    Russia-Ukraine war: Moscow targeting ‘ordinary life’ with attacks on data centres, Zelensky says

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Facebook found liable as TikTok settles for $100m over user safety | Social Media News

    September 26, 2026

    At Meta Connect, the company’s smart glasses were everywhere

    September 26, 2026

    ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

    September 26, 2026

    Swiss bank shields Bitget institutions while retail funds freeze

    September 26, 2026
    Latest Posts

    A Growing Number of Election Deniers Hold Key Local Roles in Midterms

    August 6, 2026

    Lithuania warns Russia could be considering possible ‘false flag’ strike on the Baltics – Europe live | Europe

    August 6, 2026

    Will Mamdani’s city-run grocery stores require ID to shop? Here’s the truth

    August 6, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Facebook found liable as TikTok settles for $100m over user safety | Social Media News

    September 26, 2026

    At Meta Connect, the company’s smart glasses were everywhere

    September 26, 2026

    ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

    September 26, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.