{
  "id": 10462378,
  "title": "Kiteworks tells users to shut down servers amid fears of 'imminent' cyberattack",
  "url": "https://urgent.news/2026/09/28/kiteworks-tells-users-to-shut-down-servers-amid-fears-of-imminent",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-09-28T14:20:00.000Z",
  "source": {
    "name": "TechRadar",
    "slug": "techradar",
    "url": "https://www.techradar.com/pro/security/kiteworks-tells-users-to-shut-down-servers-amid-fears-of-imminent-cyberattack"
  },
  "original_language": "en",
  "account": "US-based secure file sharing company Kiteworks informed customers to shut down their servers for nine hours due to a \"credible\" planned cyberattack, with no breaches reported. The advisory, issued by the company, was lifted on September 27, and systems were restored after the shutdown. Kiteworks did not disclose the source of the threat intelligence, but stated that the measure was precautionary and not a response to an ongoing breach. The company's Chief Information Security Officer, Frank Balonis, emphasized that there were no signs of system compromise, and all known vulnerabilities were addressed in the latest version (9.5.1). Secure data-sharing platforms are often targeted by cybercriminals due to the sensitive information they handle, and Kiteworks is an example of such a platform utilized by organizations to manage sensitive data securely. While there is speculation about the attackers, no specific group has been identified. The incident has raised concerns about potential reemergence of the infamous Cl0p hacking group, which previously targeted major file-sharing platforms Cl0p and MOVEit three years ago, causing significant breaches and financial losses.",
  "summary": "The police notified Kiteworks of apparently imminent attack, leading to the company reacting fast.",
  "key_points": [
    "Kiteworks advised customers to shut down servers for nine hours due to credible cyberattack threat.",
    "No breaches reported after the nine-hour shutdown, systems restored on September 27.",
    "Chief Information Security Officer Frank Balonis stated no signs of system compromise."
  ],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}