KITEWORKS has disclosed that a previously unknown critical vulnerability was found during a scheduled precautionary shutdown, itself a response to intelligence about a potential imminent cyberattack. The issue was confined to a capability that was enabled for less than 1% of Kiteworks’ customer base. The company says a fix was developed and deployed within the shutdown window, and an additional protective layer was applied across all environments.
There is no public evidence that the vulnerability has been exploited in the wild, and Kiteworks notes that other products in its portfolio were not affected.
The nine-hour shutdown action, which involved taking production systems offline and temporarily suspending environments hosted on behalf of customers, was described by the company as preventative rather than a response to a confirmed breach. As the threat window has now passed, Kiteworks has lifted the shutdown recommendation and has asked customers to bring their systems back online.
The company has not released specifics about the flaw or a CVE identifier at the time of writing, and The Hacker News has contacted Kiteworks about a potential public advisory and CVE assignment. CISO Frank Balonis emphasised that the decision to offline production systems was made to prioritise customer data security, and no anomalies were observed during the precautionary period.