#6
BleepingComputer
general
July 24, 2026 at 07:36 UTC
Clop ransomware targets Windchill, FlexPLM in data theft attacks
By Sergiu Gatlan
AI Summary
The Clop ransomware gang (Cl0p) has launched a new data theft extortion campaign targeting internet-exposed instances of PTC Windchill (PLM software) and FlexPLM, continuing their pattern of exploiting enterprise software platforms for mass data theft without encrypting files. This follows Clop's prior campaigns exploiting MOVEit and GoAnywhere vulnerabilities. Organizations running internet-facing PTC Windchill or FlexPLM instances should treat these as actively targeted and audit exposure immediately.
Relevance score: 80.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →