Cl0p exploits PTC Windchill and FlexPLM flaw in data-theft campaign
Researchers reported that Cl0p was exploiting CVE-2026-12569 in internet-exposed PTC Windchill and FlexPLM product lifecycle management servers to steal engineering data, sending extortion emails to victims from 20 July 2026.
- Victim
- PTC Windchill and FlexPLM customers (Cl0p campaign)