-

CyberCube report: MOVEit attacks shine light on cyber (re)insurance industry’s blind spots

LONDON--(BUSINESS WIRE)--Key lessons can be learned from Cl0p’s MOVEit attacks, according to analysis by leading cyber analytics firm CyberCube.

The ongoing cybersecurity incident known as the global MOVEit MFT (Managed File Transfer) attack has affected companies and government agencies on both sides of the Atlantic. The impact has been substantial - with hundreds of companies already hit by data theft and extortion, and the private information of over 20 million individuals exposed to date. The Cl0p ransomware and extortion gang was behind the attacks.

A Single Point of Failure (SPoF) technology refers to a critical system, product, or service that is relied upon by many companies. The failure of such technology can cause a domino effect, affecting many organizations in tandem and creating a ripple effect of adverse outcomes. CyberCube’s SPoF Intelligence tool identified 2,890 vulnerable MOVEit MFT deployments mapped to companies in 75 different countries at the time of the attacks in June.

A new report “CyberCube SPoF Intelligence: Lessons Learned from the MOVEit Attack” highlights three key lessons that can be learned from the MOVEit attacks that can help the (re)insurance industry better understand how widespread data breach and extortion events can unfold. These are:

  1. Cyber (re)insurers have a blind spot when it comes to managing third-party risk arising from insureds’ service providers and their partners using vulnerable SPoFs.
  2. Companies that are dependent on Data Aggregator SPoFs, including MFT applications, could be targeted in future attacks. This points to the need for the (re)insurance industry and the broader security community to be vigilant about the threat to MFTs, even if it is not MOVEit.
  3. The MOVEit attack will not be the last widespread data breach and extortion event. (Re)insurers should focus on identifying insureds that are using risky MFT SPoFs.

William Altman, Cyber Threat Intelligence Services Lead, said: “The cyber (re)insurance industry is currently looking into the concept of systemic cyber events and specifically questioning whether Cl0p's MOVEit attacks can be classified as one. As the industry strives to establish a unified definition for systemic cyber disasters, examining events such as Cl0p's MOVEit attacks closely is crucial, as they provide invaluable real-world evidence that can help shape more informed perspectives.”

Read the report here

Contacts

Yvette Essen, Head of Content, Communications & Creative, yvettee@cybcube.com

CyberCube


Release Versions

Contacts

Yvette Essen, Head of Content, Communications & Creative, yvettee@cybcube.com

More News From CyberCube

New CyberCube Report Highlights Global Ransomware Trends and Methods to Navigate Leaner Conditions

LONDON--(BUSINESS WIRE)--Ransomware is growing beyond traditional hotspots and in emerging economies, including Latin America, Africa, the Middle East, and Asia, according to CyberCube’s latest research. The report, titled “Applying Analytics and Threat Intelligence to Grow in a Soft Market”, states these trends underscore ransomware’s shift beyond traditional hotspots and toward regions undergoing rapid digitalization, uneven defense, and growing strategic importance. CyberCube’s H2 2025 Globa...

CyberCube Reveals Insurance Loss Estimate for AWS “Amazonk” Outage

SAN FRANCISCO--(BUSINESS WIRE)--CyberCube, the leading cyber risk analytics provider, has released a preliminary loss estimate for the Amazon Web Services (AWS) outage ranging from $38 million to $581 million. The event, which CyberCube is nicknaming “Amazonk”, is expected to have a loss ratio impact for cyber insurers in the low- to mid-single digits, in keeping with CyberCube’s view that this event presents the potential for only moderate insurance impact. Although the event could play out in...

CyberCube Raises More Than $180MM from New Cornerstone Investor Spectrum Equity

SAN FRANCISCO--(BUSINESS WIRE)--CyberCube, a leading cyber risk modeling and analytics business, today announced an investment of more than $180MM by Spectrum Equity, subject to customary regulatory approvals. With this investment, Spectrum Equity will join existing investors ForgePoint Capital, Hudson Structured Capital Management (Bermuda) Ltd, and MTech Capital, as a cornerstone institutional investor, supporting the company's long-term growth and innovation. CyberCube is the analytics engin...
Back to Newsroom