Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Build a Rocket Boy confirms more layoffs amid further claims of “organized espionage and corporate sabotage”

    Former Blizzard CCO and Bonfire CEO Rob Pardo to present keynote address at GDC Festival of Gaming

    Turkish mobile developer Vento Games secures $4m in seed round funding

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      What the polls say about how Americans are using AI

      February 27, 2026

      Tensions between the Pentagon and AI giant Anthropic reach a boiling point

      February 21, 2026

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026
    • Business

      Google releases Gemini 3.1 Flash Lite at 1/8th the cost of Pro

      March 4, 2026

      Huawei Watch GT Series

      March 4, 2026

      Weighing up the enterprise risks of neocloud providers

      March 3, 2026

      A stolen Gemini API key turned a $180 bill into $82,000 in two days

      March 3, 2026

      These ultra-budget laptops “include” 1.2TB storage, but most of it is OneDrive trial space

      March 1, 2026
    • Crypto

      Banks Respond to Kraken’s Federal Reserve Access as Trump Sides with Crypto

      March 4, 2026

      Hyperliquid and DEXs Break the Top 10 — Is the CEX Era Ending?

      March 4, 2026

      Consensus Hong Kong 2026: The Institutional Turn 

      March 4, 2026

      New Crypto Mutuum Finance (MUTM) Reports V1 Protocol Progress as Roadmap Enters Phase 3

      March 4, 2026

      Bitcoin Short Sellers Caught Off Guard in New White House Move

      March 4, 2026
    • Technology

      Big tech companies agree to not ruin your electric bill with AI data centers

      March 5, 2026

      Mark Zuckerberg downplays Meta’s own research in New Mexico child safety trial

      March 5, 2026

      Bill Gates-backed TerraPower begins nuclear reactor construction

      March 5, 2026

      Assassin’s Creed Unity is getting a free 60 fps patch tomorrow

      March 5, 2026

      LG reveals pricing for its 2026 OLED TVs

      March 5, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Software and Apps»A brief history of mass hacks
    Software and Apps

    A brief history of mass hacks

    TechAiVerseBy TechAiVerseMarch 12, 2025No Comments7 Mins Read3 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    A brief history of mass hacks
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    A brief history of mass hacks

    Enterprise cybersecurity tools, such as routers, firewalls, and VPNs, exist to protect corporate networks from intruders and malicious hackers, something that is particularly important in today’s age of widespread remote and hybrid working. 

    But while pitched as tools that help organizations stay safe from outside threats, many of these products have time and again been found to contain software bugs that allow malicious hackers to compromise the very networks these products were designed to protect.

    These bugs have been blamed for an explosion in mass-hacking campaigns in recent years, whereby malicious hackers abuse these often easy-to-exploit security flaws to break into the networks of thousands of organizations and steal sensitive company data.

    We’ve put together a brief history of mass hacks, and will update this article when more inevitably come to light. 

    One of the first mass hacks of this decade saw a notorious ransomware crew exploit a vulnerability in Fortra’s GoAnywhere managed file transfer software, a product used by companies to share large files and sensitive datasets over the internet. The prolific Clop ransomware gang exploited the bug to compromise more than 130 organizations and steal the personal data of millions of individuals. The vulnerability was exploited as a zero-day, which means Fortra had no time to fix it before it came under attack. Clop later published data stolen from victim organizations who did not pay the hackers a ransom. Hitachi Energy, security giant Rubrik, and Florida-based health tech organization NationBenefits — which saw the data of more than three million members stolen in the attack — reported intrusions resulting from the buggy software.

    May 2023: MOVEit flaws allowed theft of 60 million people’s data

    The mass hack of MOVEit remains one of the largest mass breaches of all time, with hackers abusing a flaw in another widely used file transfer software, developed by Progress Software, to steal data from several thousand organizations. The attacks were again claimed by the Clop ransomware group, which exploited the MOVEit vulnerability to steal data on more than 60 million individuals, according to cybersecurity company Emsisoft. U.S. government services contracting giant Maximus was the largest victim of the MOVEit breach after confirming that hackers accessed the protected health information of as many as 11 million individuals.

    October 2023: Cisco zero-day exposed thousands of routers to takeovers

    The mass hacks continued into the second half of 2023, with hackers exploiting an unpatched zero-day vulnerability in Cisco’s networking software throughout October to compromise tens of thousands of devices that rely on the software, such as enterprise switches, wireless controllers, access points, and industrial routers. The bug granted attackers “full control of the compromised device.” While Cisco didn’t confirm how many customers had been affected by the flaw, Censys, a search engine for internet-connected devices and assets, says it had observed almost 42,000 compromised devices exposed to the internet.

    Image Credits:Ramon Costa/SOPA Images/LightRocket / Getty Images

    November 2023: Ransomware gang exploits Citrix bug

    Citrix NetScaler, which large enterprises and governments use for application delivery and VPN connectivity, became the latest mass-hack target just one month later in November 2023. The bug, known as “CitrixBleed,” allowed the Russia-linked ransomware gang LockBit to extract sensitive information from affected NetScaler systems at big-name firms. Aerospace giant Boeing, law firm Allen & Overy, and the Industrial and Commercial Bank of China were claimed as victims. 

    January 2024: China hackers exploited Ivanti VPN bugs to breach companies

    Ivanti became a name synonymous with mass hacks after Chinese state-backed hackers began mass-exploiting two critical zero-day vulnerabilities in Ivanti’s corporate Connect Secure VPN appliance. While Ivanti said at the time that only a limited number of customers had been affected, cybersecurity company Volexity found that more than 1,700 Ivanti appliances worldwide were exploited, affecting organizations in the aerospace, banking, defense, and telecoms industries. U.S. government agencies with affected Ivanti systems in operation were ordered to immediately take the systems out of service. Exploitation of these vulnerabilities has since been linked to the China-backed espionage group known as Salt Typhoon, which more recently was found to have hacked into the networks of at least nine U.S. telecommunications companies. 

    In February 2024, hackers took aim at two “easy-to-exploit” vulnerabilities in ConnectWise ScreenConnect, a popular remote access tool that allows IT and support technicians to remotely provide technical assistance directly on customer systems. Cybersecurity giant Mandiant said at the time its researchers had observed “identified mass exploitation” of the two flaws, which were being abused by various threat actors to deploy password stealers, backdoors, and in some cases, ransomware.

    Hackers hit Ivanti customers (again) with fresh bugs

    Ivanti made headlines again — also in February 2024 — when attackers exploited another vulnerability in its widely used enterprise VPN appliance to hack its customers. The Shadowserver Foundation, a nonprofit organization that scans and monitors the internet for exploitation, told TechCrunch at the time it had observed more than 630 unique IP addresses attempting to exploit the server-side flaw, which allows attackers to gain access to devices and systems ostensibly protected by the vulnerable Ivanti appliances.

    November 2024: Palo Alto firewall bugs put thousands of firms at risk 

    Later in 2024, hackers compromised potentially thousands of organizations by exploiting two zero-day vulnerabilities in software made by cybersecurity giant Palo Alto Networks and used by customers around the world. The vulnerabilities in PAN-OS, the operating system that runs on all of Palo Alto’s next-generation firewalls, allowed attackers to compromise and exfiltrate sensitive data from corporate networks. According to researchers at security firm watchTowr Labs, who reverse-engineered Palo Alto’s patches, the flaws resulted from basic mistakes in the development process. 

    December 2024: Clop compromises Cleo customers

    In December 2024, the Clop ransomware gang targeted yet another popular file transfer technology to launch a fresh wave of mass hacks. This time, the gang exploited flaws in tools made by Cleo Software, an Illinois-based maker of enterprise software, to target dozens of the company’s customers. By early January 2025, Clop listed almost 60 Cleo companies that it had allegedly compromised, including U.S. supply chain software giant Blue Yonder and German manufacturing giant Covestro. By the end of January, Clop added another 50 alleged Cleo mass-hack victims to its dark web leak site. 

    Image Credits:Alex Kraus/Bloomberg / Getty Images

    January 2025: New year, new Ivanti bugs under attack

    The new year began with Ivanti falling victim to hackers — yet again. The U.S. software giant alerted customers in early-January 2025 that hackers were exploiting a new zero-day vulnerability in its enterprise VPN appliance to breach the networks of its corporate customers. Ivanti said that a “limited number” of customers were affected, but declined to say how many. The Shadowserver Foundation says its data shows hundreds of backdoored customer systems. 

    Fortinet firewall bugs exploited since December

    Just days after Ivanti’s latest bug was disclosed, Fortinet confirmed that hackers had separately been exploiting a vulnerability in its firewalls to break into the networks of its corporate and enterprise customers. The flaw, which affects the cybersecurity company’s FortiGate firewalls, had been “mass exploited” as a zero-day bug since at least December 2024, according to security research firms. Fortinet declined to say how many customers were affected, but security research firms investigating the attacks observed intrusions affecting “tens” of affected devices.

    SonicWall says hackers are remotely hacking customers

    January 2025 remained a busy month for hackers exploiting bugs in enterprise security software. SonicWall said in late January that as-yet-unidentified hackers are exploiting a newly discovered vulnerability in one of its enterprise products to break into its customer networks. The vulnerability, which affects SonicWall’s SMA1000 remote access appliance, was discovered by Microsoft’s threat researchers and is “confirmed as being actively exploited in the wild,” according to SonicWall. The company hasn’t said how many of its customers have been affected or if the company has the technical ability to confirm, but with more than 2,300 devices exposed to the internet, this bug has the potential to be the latest mass hack of 2025.

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleOpen source licenses: Everything you need to know
    Next Article Aiming to accelerate product design with AI, Trace.Space raises a seed round
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Rivian was saved by software in 2025

    February 13, 2026

    Former Tesla product manager wants to make luxury goods impossible to fake, starting with a chip

    February 10, 2026

    GTMfund has rewritten the distribution playbook for the AI era

    January 9, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025704 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025289 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025164 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025124 Views
    Don't Miss
    Gaming March 5, 2026

    Build a Rocket Boy confirms more layoffs amid further claims of “organized espionage and corporate sabotage”

    Build a Rocket Boy confirms more layoffs amid further claims of “organized espionage and corporate…

    Former Blizzard CCO and Bonfire CEO Rob Pardo to present keynote address at GDC Festival of Gaming

    Turkish mobile developer Vento Games secures $4m in seed round funding

    Good Games Group has bought the Humble and Firestoke back catalogues. Now, newly renamed as Balor Games, it wants to invest in triple-I

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Build a Rocket Boy confirms more layoffs amid further claims of “organized espionage and corporate sabotage”

    March 5, 20262 Views

    Former Blizzard CCO and Bonfire CEO Rob Pardo to present keynote address at GDC Festival of Gaming

    March 5, 20262 Views

    Turkish mobile developer Vento Games secures $4m in seed round funding

    March 5, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    Best TV Antenna of 2025

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.