Kiteworks urges customers to shut down their servers amid ‘imminent’ threat of cyberattack
Kiteworks has advised customers to power down their Kiteworks systems after receiving law-enforcement intelligence about a possible imminent cyberattack. The company said the alert is preventative, that it has not detected a breach, and recommended customers run its latest patched release, version 9.5.1.

Why It Matters
Kiteworks provides file-transfer services to thousands of organizations across sectors including healthcare and government, so an exploit could disrupt sensitive data flows and operations. The company’s history with a large 2021 Accellion-era breach underscores the potential risk to customers if new vulnerabilities are abused.
Key Facts
- Company: Kiteworks (formerly Accellion)
- Alert source: Credible threat intelligence from law enforcement (agency not specified)
- Recommendation: Precautionary shutdown window for customers; upgrade to software release 9.5.1
- Compromise status: Kiteworks said it is not aware of any compromise of its systems
- Potential vulnerability type: Zero-day (unknown to Kiteworks)
Kiteworks has warned its customers to shut down Kiteworks systems temporarily after receiving what it described as credible threat intelligence from law enforcement that a threat actor might attempt to target some customer systems. The company framed the advisory as preventive, saying it had no indication of a current compromise and that it recommended a shutdown window while it and law enforcement investigate.
Chief information security officer Frank Balonis told TechCrunch the company acted "out of an abundance of caution" and urged customers to apply its latest patched release, version 9.5.1, which Kiteworks says fixes all known vulnerabilities. In communications shared with TechCrunch, Kiteworks expressed concern about the possible exploitation of zero-day bugs — flaws unknown to the vendor that would not have time for preemptive fixes.
Kiteworks did not identify which law-enforcement agency provided the intelligence or name any suspected hacking group. The FBI declined to comment, and the U.S. Cybersecurity and Infrastructure Security Agency (CISA) had not immediately responded to requests for comment, according to TechCrunch. It is unclear how many customer systems could be affected; Kiteworks states it serves thousands of customers across healthcare, technology, education, automotive and government sectors.
Security researcher Kevin Beaumont noted at least a thousand internet-facing Kiteworks systems listed online, though he cautioned that figure may overcount potentially affected servers. At least one Kiteworks customer in the healthcare sector reported taking down its server after receiving the alert, saying the outage disrupted clinicians’ ability to contact patients. Kiteworks previously suffered a major incident in the Accellion era in late 2021 when a vulnerability in its file-transfer product was exploited in a widespread extortion campaign that affected hundreds of organizations.
Keep Reading

For months, OpenAI’s agent swarms have been attacking online databases to find obscure facts

Meta is putting its muscle behind Muse as the AI app takes off

Astra and Opus just passed Turing’s other test
