ConnectWise, a provider of remote access and automation software, confirmed it was targeted in a cyberattack linked to a sophisticated nation-state actor. The breach affected a very small number of its ScreenConnect customers. The attack occurred shortly after ConnectWise patched a vulnerability identified as CVE-2025-3935. The incident raises concerns due to ConnectWise's role in supplying software that enables remote monitoring and management for corporate clients, potentially exposing a wide range of companies to risk. While the specific nation-state actor remains unidentified, the attack is part of a broader trend of state-sponsored cyber threats targeting technology providers.
“A very small number” of its ScreenConnect customers affected, says remote monitoring and management (RMM) software provider @ConnectWise after reporting a cyberattack by an unknown nation-state actor. #cybersecurity #infosec #ITsecurity https://t.co/rfNT78lNTa
The hack is concerning because ConnectWise supplies remote access and automation software for corporate clients, potentially giving scammers access to a broad range of companies. https://t.co/6asICxPHyc
ConnectWise Breached, ScreenConnect Customers Targeted: https://t.co/Dm1iZIQbgZ by darkreading #infosec #cybersecurity #technology #news