DragonForce Exploits SimpleHelp Flaws to Deploy Ransomware Across Customer Endpoints
The threat actors behind the DragonForce ransomware gained access
to an unnamed Managed Service Provider's (MSP) SimpleHelp remote
monitoring and management (RMM) tool, and then leveraged it to
exfiltrate data and drop the locker on multiple endpoints. It's
believed that the attackers exploited a trio of security flaws in
SimpleHelp (CVE-2024-57727, CVE-2024-57728, and CVE-2024-57726)
that were
Read more https://thehackernews.com/2025/05/dragonforce-exploits-simplehelp-flaws.html