PwC Australia claims "small" number of clients affected by MOVEit data hack

PwC Australia claims "small" number of clients affected by MOVEit data hack

Photo: Nahel Abdul Hadi, via Unsplash

PricewaterhouseCoopers (PwC) Australia has been dragged into a global data hack after the Russian ransomware gang Cl0p took advantage of vulnerabilities in a managed file transfer software program, but the advisory firm clarifies there has only been a limited impact on clients.

Hundreds of organisations are caught up in the cyber breach of MOVEIt Transfer, including the US Department of Energy, oil and gas giant Shell, Johns Hopkins University, British Airways, and the BBC, as well as various state and provincial government departments in the US and Canada.

The owner of MOVEIt, Progressive Software, issued a notice on June 15 noting a critical vulnerability it had encountered could lead to "escalated privileges and potential unauthorised access to the environment".

Progressive Software noted that earlier versions of the software could give rise to vulnerabilities in the MOVEIt web application to what is known as an SQL injection, whereby malicious code is injected into an application.

"An attacker could submit a crafted payload to a MOVEit Transfer application endpoint which could result in modification and disclosure of MOVEit database content," Progressive Software wrote in the notice.

A PwC spokesperson told Business News Australia the firm uses the software with a limited number of client engagements.

"As soon as we learned of this incident we stopped using the platform and started our own investigation," the spokesperson said.

"Our investigation has shown that PwC’s own IT network has not been compromised and that MOVEit’s vulnerability had a limited impact on PwC.  We have reached out to the small number of clients whose files were impacted to discuss the incident.

"Data security is a key priority for PwC and we continue to put the right resources and safeguards in place to protect our network."

Get our daily business news

Sign up to our free email news updates.

Please tick to verify that you are not a robot

 
ERP: Your ticket to better business visibility, control and efficiency
Partner Content
When it’s time to evolve and mature as a business, the process of choosing the ri...
Fusion5
Advertisement

Related Stories

Homes by CMA founder Chris Baptista builds legacy as Brisbane Young Entrepreneur of the Year

Homes by CMA founder Chris Baptista builds legacy as Brisbane Young Entrepreneur of the Year

As numerous major construction companies buckle under the weig...

Sydney proptech Archistar gets picked up for pilot program in Texas

Sydney proptech Archistar gets picked up for pilot program in Texas

A Sydney-based technology platform that uses artificial intelligenc...

Costa board accepts $1.4b takeover offer from Paine Schwartz, Driscoll’s and BCI

Costa board accepts $1.4b takeover offer from Paine Schwartz, Driscoll’s and BCI

One of Australia’s largest fruit and vegetable producers, Cos...

Sustainable tourism startup Wander seeks up to $5m from crowdfunding campaign

Sustainable tourism startup Wander seeks up to $5m from crowdfunding campaign

Wander, an innovative hotel chain startup with an eye on susta...