Supply Chain Incident
Kaseya VSA ransomware supply-chain attack
Attackers abused Kaseya VSA management software to distribute ransomware through managed service provider environments to downstream customers.
ConfidenceHigh
Evidence LevelVendor
Attack StageDistribution Compromise
Source Artifact DivergenceUnknown
Affected Packages
No structured records.
Affected Releases
No structured records.
Repositories
No structured records.
Organizations
Maintainers
No structured records.
Threat Actors
No structured records.
Campaigns
No structured records.
Build Systems
No structured records.
Distribution Channels
- Vendor software update channel
Compromised Accounts
No structured records.
Connected Entities
- Kaseya Organization
- Vendor software update channel Distribution Channel
References
- Kaseya VSA Supply-Chain Ransomware Attack Cybersecurity and Infrastructure Security Agency · 2021-07-02