Five Eyes Warning
The alert from all Five Eyes countries said threat actors can use a vulnerable MSP as an initial access vector to multiple victim networks, with globally cascading effects. They expected malicious cyber actors — including state-sponsored APT groups — to step up their targeting of MSPs in their efforts to exploit provider-customer network trust relationships. For example, threat actors successfully compromising an MSP could enable follow-on activity, such as ransomware and cyber espionage, against the MSP, as well as across the MSP’s customer base.