Back to news

Progress Shuts Down ShareFile Access Amid Threat; Zero-Day Startup Founders Exposed as Felons

Two cybersecurity stories collide: a major file-sharing platform goes dark over a credible threat, while a zero-day broker is unmasked as a front run by convicted fraudsters.

Progress Shuts Down ShareFile Access Amid Threat; Zero-Day Startup Founders Exposed as Felons

What happened

Progress Software has directed ShareFile customers to take their on-premises Storage Zone Controllers offline after the company identified a credible external security threat targeting those Windows-based servers. Progress proactively disabled access to the affected customer accounts while its internal and external security teams investigate the scope and nature of the risk. Separately, reporting from Krebs on Security reveals that a cybersecurity startup advertising millions of dollars in payouts for zero-day vulnerabilities is controlled by two individuals operating under assumed names — both of whom are convicted felons with histories tied to fabricated intelligence firms and a defunct AI lobbying platform.

Why it matters for your business

The ShareFile incident underscores the operational risk that self-hosted enterprise software introduces: a single unpatched or compromised component can trigger a forced shutdown across an entire organization's file-sharing infrastructure with little warning. Operations and IT leaders should audit any on-premises ShareFile deployments immediately and verify whether their accounts have been suspended. The zero-day broker story carries a different but equally serious warning — organizations and researchers tempted to engage with high-paying vulnerability acquisition programs should conduct rigorous due diligence on counterparties, as fraudulent actors are increasingly positioning themselves inside legitimate-seeming security markets to harvest exploits, intelligence, or credibility.

What to watch next

Progress Software has not yet disclosed the technical nature of the ShareFile threat, so customers should monitor the company's official communications for patch availability or further remediation guidance before bringing Storage Zone Controllers back online. On the zero-day broker front, it remains to be seen whether law enforcement or regulatory bodies will take action against the startup and its principals, and whether any legitimate vulnerability intelligence changed hands during its operation.

Sources

Want this kind of clarity applied to your own systems?

HashWhales can review your website, infrastructure, security posture, and growth bottlenecks, then send a prioritized action plan.

Free AuditChat on WhatsApp