A Cl0p ransomware affiliate has been exploiting a critical-severity vulnerability in PTC Windchill for remote code execution.

Suspected Cl0p actors chain a FlexPLM WSDL leak with a Windchill flaw for unauthenticated RCE, dropping JSP web shells and stealing product data.

A Cl0p ransomware affiliate has been exploiting a critical-severity vulnerability in PTC Windchill for remote code execution.