Kaseya VSA supply-chain ransomware (REvil)
REvil affiliates exploited a SQL injection zero-day in Kaseya's VSA remote-management platform to push ransomware to ~60 MSPs and through them to ~1,500 downstream organisations. The largest supply-chain ransomware attack on record.
- Victim
- Kaseya VSA customers (~60 MSPs, ~1,500 downstream organisations)
- Loss
- $200.0M