Kiteworks urges 6-hour server shutdown over potential zero-day attacks

Kiteworks Issues Global Server Shutdown Warning Amid Potential Zero-Day Threat

A major cybersecurity warning has been issued by secure file-sharing software company Kiteworks, urging customers worldwide to temporarily shut down their servers for six hours on Saturday. The move comes after the company received credible threat intelligence from law enforcement indicating a potential cyberattack may be imminent this weekend.

The affected time zones span across multiple regions, including Central Europe and North America. Customers are advised to shut down their Kiteworks systems between 4:00 a.m. and 10:00 a.m. on Saturday in Central Europe, or between 10:00 p.m. Friday and 4:00 a.m. Saturday in New York. The company recommends taking systems offline even if they are not directly accessible from the Internet.

Kiteworks confirmed to BleepingComputer that it received intelligence from federal authorities warning of a potential threat actor targeting some customer systems. While the company stressed that this is a precautionary measure rather than a response to a confirmed breach, the warning has sparked concerns about the possibility of zero-day attacks. Zero-day vulnerabilities refer to previously unknown security flaws in software that can be exploited by attackers before a patch or fix becomes available.

The reason for the shutdown recommendation appears to be linked to potential zero-day attacks, although neither Kiteworks nor law enforcement has confirmed whether such an exploit has been discovered or used. The company’s customer support team told Heise that the shutdown is intended to protect against any potential zero-day attacks, but this statement does not confirm the existence of a specific vulnerability.

Kiteworks develops secure file-transfer and communications products used by government organizations, financial institutions, and enterprises. These platforms commonly store sensitive documents, making them attractive targets for cybercriminals conducting data-theft extortion attacks. The Clop extortion gang has a history of targeting enterprise platforms in such attacks, and the U.S. Department of State is currently offering a $10 million reward for any information linking these attacks to a foreign government.

In light of this warning, it’s essential for organizations that rely on secure file-sharing software like Kiteworks to take proactive measures to protect their systems and data. This includes ensuring all software is up-to-date with the latest patches and fixes, implementing robust security protocols, and regularly monitoring system activity for potential signs of a breach. While the likelihood of a zero-day attack remains uncertain, it’s crucial for organizations to be prepared and take precautions to minimize the risk of a successful cyberattack.


Source: Bleeping Computer — 2026-09-25