Microsoft warns critically Goany Where Security Bug is utilized by Ransomware Gang, so be on your guard


  • CVE-2025-10035 in GoanyWhere MFT is utilized by Ransomware Group Storm-1175
  • Vulnerability enables unauthorized execution of remote code; Medusa Ransomware was inserted into at least one case
  • Patch released September 18; Over 500 cases remain exposed and calls for immediate upgrades or mitigation

Microsoft warns that a ransomware group is utilizing a vulnerability in the maximum severity found recently in Goany Where Managed File Transfer (MFT).

Fortra recently said that it discovered and patched a essialization vulnerability in the license servlet to Goanywhere MFT, a tool that helps companies send and receive files safely.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top