<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: Progress Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving Progress.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:51 GMT</lastBuildDate><item><title>Progress confirms ShareFile zero-day flaw behind Storage Zone shutdown</title><link>https://bleepingcomputer.com/news/security/progress-confirms-sharefile-zero-day-flaw-behind-storage-zone-shutdown</link><guid isPermaLink="false">cst-2494</guid><description>Progress Software confirmed that a high-severity zero-day vulnerability prompted the emergency shutdown of ShareFile Storage Zone Controllers. The company released security updates to address the flaw.</description><pubDate>Tue, 14 Jul 2026 16:08:47 GMT</pubDate></item><item><title>Progress urges ShareFile customers to shut down servers over "credible" threat</title><link>https://bleepingcomputer.com/news/security/progress-urges-sharefile-customers-to-shut-down-servers-over-credible-threat</link><guid isPermaLink="false">cst-2329</guid><description>Progress Software has urged ShareFile customers using Storage Zone Controllers to immediately shut down their servers due to identification of a credible external security threat targeting the on-premises file sharing solution. The company issued the directive via email to affected customers but has not disclosed specific details about the nature or scope of the threat.</description><pubDate>Fri, 10 Jul 2026 16:26:10 GMT</pubDate></item><item><title>6th July – Threat Intelligence Report</title><link>https://research.checkpoint.com/2026/6th-july-threat-intelligence-report-2</link><guid isPermaLink="false">cst-594</guid><description>A threat intelligence bulletin reports multiple significant incidents across sectors: ransomware attacks affecting financial, defense, manufacturing, and insurance organizations; artificial intelligence threats including LLM-generated ransomware, unsafe coding agents, and phishing domain hijacking; and critical vulnerabilities in Oracle, Linux, Citrix, and Progress products with active exploitation observed.</description><pubDate>Mon, 06 Jul 2026 12:01:54 GMT</pubDate></item><item><title>Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts</title><link>https://thehackernews.com/2026/07/latest-progress-kemp-loadmaster-pre.html</link><guid isPermaLink="false">cst-48</guid><description>A critical pre-authentication remote code execution vulnerability in Progress Kemp LoadMaster (CVE-2026-8037) is experiencing active exploitation attempts in the wild. The flaw, with a CVSS score of 9.6, allows attackers to inject operating system commands without authentication. eSentire's Threat Response Unit documented these exploitation efforts.</description><pubDate>Wed, 01 Jul 2026 13:56:18 GMT</pubDate></item><item><title>You’re Not Supposed To ShareFile With Everyone (Progress ShareFile Pre-Auth RCE Chain CVE-2026-2699 &amp; CVE-2026-2701)</title><link>https://labs.watchtowr.com/youre-not-supposed-to-sharefile-with-everyone-progress-sharefile-pre-auth-rce-chain-cve-2026-2699-cve-2026-2701</link><guid isPermaLink="false">cst-561</guid><description>Researchers discovered and chained two vulnerabilities in Progress ShareFile's Storage Zone Controller (an on-premises gateway managing file transfers) to achieve unauthenticated remote code execution. The flaws, CVE-2026-2699 (authentication bypass) and CVE-2026-2701 (remote code execution), affected version 5.12.3 on the ASP.NET branch and were patched in version 5.12.4 released March 10, 2026. Approximately 30,000 Storage Zone Controller instances are exposed on the internet.</description><pubDate>Thu, 02 Apr 2026 10:00:42 GMT</pubDate></item><item><title>Surge in MOVEit Transfer Scanning Could Signal Emerging Threat Activity</title><link>https://greynoise.io/blog/surge-moveit-transfer-scanning-activity</link><guid isPermaLink="false">cst-1897</guid><description>GreyNoise detected a sharp increase in scanning activity targeting MOVEit Transfer systems starting May 27, 2025, with daily scanning IPs jumping from fewer than 10 to over 100, and reaching 319 unique IPs by May 29. This surge suggests potential emerging threat activity or reconnaissance efforts against the file transfer platform.</description><pubDate>Wed, 25 Jun 2025 00:00:00 GMT</pubDate></item><item><title>Move It on Over: Reflecting on the MOVEit Exploitation | Huntress</title><link>https://huntress.com/blog/move-it-on-over-reflecting-on-the-moveit-exploitation</link><guid isPermaLink="false">cst-1060</guid><description>A security blog reflects on the long-term consequences and lessons from the MOVEit exploitation campaign. The post provides guidance for defenders on maintaining vigilance and applying historical insights to improve defenses.</description><pubDate>Fri, 07 Jul 2023 00:00:00 GMT</pubDate></item><item><title>MOVEit Transfer Critical Vulnerability CVE-2023-34362 | Huntress</title><link>https://huntress.com/blog/moveit-transfer-critical-vulnerability-rapid-response</link><guid isPermaLink="false">cst-1068</guid><description>Huntress is tracking active exploitation of a zero-day vulnerability in Progress MOVEit Transfer that enables privilege escalation and unauthorized access. The flaw affects the web-based file transfer application and is being leveraged by attackers in real-world attacks.</description><pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate></item></channel></rss>