The VSA also has a web portal which is available in port 18018 (or 443) depending on the configuration. The VSA product has a simple server/agent architecture, where you have agents installed on endpoints & servers ( using port 5721) that you manage which then report back to the VSA appliance. The main target of the attack was customers of Kaseya that were using their VSA product. Kaseya’s public statement and info here –> Important Notice July 4th, 2021 – Kaseya Before the weekend, news came out that Kaseya (a known vendor in the RMM market and is commonly used by MSPs) was targeted as part of an attack by the ransomware group called REvil.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |