ptc News Articles

Recent news articles refferecing the vendors vulnerabilities.

The long tail of Clop’s PTC hack is just beginning to emerge

The data theft extortion group likely compromised a critical vulnerability affecting PTC’s product lifecycle management software in June, a month before it sent threatening emails to victims.

2 weeks ago

Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data

Clop-linked attacks exploit CVE-2026-12569 to deploy a Windchill web shell that decrypts credentials, maps vault data, and loads Java code in memory.

2 weeks ago

Clop created custom web shell for Windchill data theft attacks

A custom Java web shell likely linked to the Clop ransomware gang was designed specifically for PTC Windchill and FlexPLM servers, with built-in features to decrypt credentials, enumerate file repositories, and steal files.

2 weeks ago

Philips and GE investigating Clop ransomware data theft claims

Tech giants General Electric (GE) and Philips have also confirmed they're investigating claims that the Clop ransomware gang breached their systems and stole data.

2 weeks ago

Shell investigates 'potential incident' after Clop data theft claims

Oil giant Shell has confirmed it is investigating a potential security incident after the Clop ransomware gang claimed it stole 89GB of data.

2 weeks ago

Clop ransomware targets Windchill, FlexPLM in data theft attacks

The Clop ransomware gang (also tracked as Cl0p) is targeting Internet-exposed PTC Windchill and FlexPLM instances in a new data theft extortion campaign.

JSP webshells being dropped on unpatched PTC Windchill instances - IT Security News

The US Cybersecurity and Infrastructure Security Agency (CISA) added a vulnerability (CVE-2026-12569) in Windchill and FlexPLM, two product lifecycle management software platforms developed by PTC, to its Known Exploited Vulnerabilities (KEV) catalog. Entries in the KEV catalog don’t contain links…R...

JSP webshells being dropped on unpatched PTC Windchill instances - Help Net Security

A vulnerability (CVE-2026-12569) in the PTC Windchill and FlexPLM platform has been added to CISA's Known Exploited Vulnerabilities catalog.

CISA Adds Exploited PTC Windchill RCE Flaw to KEV as Web Shell Attacks Continue

CISA added CVE-2026-12569 to its KEV catalog as attackers exploit the PTC Windchill flaw to deploy JSP web shells.

First-Ever Exploitation of PTC Windchill Vulnerability Discovered in the Wild - IT Security News

CISA has added the remote code execution flaw CVE-2026-12569 to its Known Exploited Vulnerabilities catalog. The post First-Ever Exploitation of PTC Windchill Vulnerability Discovered in the Wild appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the…Read more →

Maximum severity PTC license server bug fixed

Major product lifecycle management software provider PTC has released a fix for a maximum severity vulnerability impacting a license server of its widely used Creo Elements/Direct modeling CAD software, tracked as CVE-2024-6071, reports SecurityWeek.

No more news articles to load.