Skip to content
You can now search across every topic, entity and event.What's new
MOVEit
Product

MOVEit

Progress Software's managed file-transfer product, the vector for Clop's 2023 mass-exploitation campaign.

Last refreshed: 24 July 2026

Timeline for MOVEit

#11 23 Jul

Mentioned in: Zimbra preview leaks mail to Russia

Cybersecurity: Threats and Defences
#11 15 Jul

Mentioned in: Oracle EBS gets a 3-day patch clock

Cybersecurity: Threats and Defences
View full timeline →

Background

Oracle E-Business Suite's three-day KEV Deadline this fortnight drew a direct comparison to MOVEit: CISA's listing noted the platform's shared lineage with the extortion crew behind the 2023 MOVEit campaign.

MOVEit is a managed file-transfer (MFT) product made by Progress Software (formerly Ipswitch), used by organisations to move sensitive files between systems securely. In May 2023, Clop exploited a zero-day SQL-injection flaw, CVE-2023-34362, in MOVEit Transfer at mass scale, stealing data from hundreds of organisations across government, finance and education before mounting extortion demands rather than deploying ransomware.

The campaign remains one of the largest single-vulnerability mass-exploitation events on record and set the template CISA now watches for: a single flaw in widely deployed enterprise software, hit hard and fast before defenders can patch. Recent KEV entries on platforms with comparable extortion-crew histories, such as Oracle E-Business Suite, are read against that precedent.

Common Questions
Is MOVEit still vulnerable?
The 2023 zero-day, CVE-2023-34362, was patched by Progress Software at the time. MOVEit itself has had no further high-profile mass-exploitation event since, though its name resurfaces whenever a new KEV entry shares Clop's exploitation lineage, as Oracle E-Business Suite did this fortnight.Source: Lowdown
What company makes MOVEit?
MOVEit is made by Progress Software, formerly known as Ipswitch, as a managed file-transfer product for moving sensitive files between systems.Source: Lowdown
How many organisations were affected by the MOVEit breach?
Clop's 2023 exploitation of MOVEit Transfer's zero-day flaw hit hundreds of organisations worldwide across government, finance and education before the extortion crew demanded payment to withhold stolen data.Source: Lowdown