Kiteworks Advises Customers to Shut Down Servers Amid Possible Cyberattack

Summary
Kiteworks reportedly advised customers to shut down servers on September 26 after law enforcement warned of an imminent possible attack on its systems, potentially involving a zero-day vulnerability.
Key points
- Reports on September 25, 2026, said law enforcement had alerted Kiteworks to an imminent possible cyberattack on its systems.
- The potential attack may have involved exploitation of a zero-day vulnerability; no attack or exploitation was confirmed in the article.
- Kiteworks reportedly advised customers to shut down servers between 02:00 and 08:00 UTC on September 26, or earlier, as a precaution.
- Sophos CTU researchers recommended that customers follow Kiteworks’ email guidance or contact the company directly.
Article Details
- Event Type
- Reported warning of a possible imminent cyberattack on Kiteworks systems, potentially involving a zero-day vulnerability.
- Impact
- Kiteworks reportedly advised customers to shut down servers from 02:00 to 08:00 UTC on 2026-09-26, or sooner, as a precaution. The article reports no confirmed exploitation or damage.