N-able has told customers that attackers broke into servers running its N-central platform, took administrative control without needing a password, and used that access to reach the customer computers those servers manage. Its first attempt to close the flaw did not fully work. The company shipped a second, emergency fix on 2 August.
N-central is remote monitoring and management software, or RMM. Managed service providers and in-house IT teams use it to patch, monitor, and remotely control thousands of customer machines from one console. That makes an N-central server a rare prize.
Break into one, and you inherit its reach into every endpoint behind it, the same leverage that makes a single master key to a whole cloud database so dangerous.
The security firm Huntress, which published its own analysis, put it bluntly. The flaw hands an attacker unauthenticated “god-mode” access to the console. From there they can push scripts to many or all managed machines, open remote sessions into servers and workstations, including domain controllers, and rewrite the accounts and policies that are meant to keep them out.
A patch that missed










