Progress Software is having an interesting time. First #MOVEit, now multiple #vulnerability disclosures for their #WS_FTP product. The silver lining here is that it doesn’t look like any of these are known to have been exploited in the wild. (Yet?)

But out of curiosity, we looked at the Internet exposure of WS_FTP instances with the Ad Hoc Transfer module installed, read about it here ⬇️

#infosec #securityResearch #CensysResearch #MFT (No, this isn’t MFT but it all feels very…related.)

https://censys.com/cve-2023-40044/

CVE-2023-40044: A Look at the Critical Ad Hoc Transfer Module Vulnerability in WS_FTP

Examining the Internet footprint of WS_FTP services using the critically vulnerable Ad Hoc Transfer module.

Censys