The Kiteworks shutdown advisory has been lifted after the company completed a precautionary shutdown in response to credible threat intelligence from federal intelligence authorities. Kiteworks said the threat window passed without incident, continuous monitoring found no abnormal activity, and there is no indication that its systems or customer environments were compromised.
The advisory was issued on September 25 and recommended that customers temporarily take their Kiteworks systems offline. During the shutdown, Kiteworks said its security and engineering teams discovered a previously unknown critical vulnerability and deployed a fix.
Kiteworks Shutdown Advisory Followed Threat Intelligence
Kiteworks issued the Kiteworks shutdown advisory after receiving intelligence about a potential imminent attack.
Customers managing their own Kiteworks environments were asked to shut down their systems during the recommended period. Kiteworks also shut down environments it hosts on behalf of customers.
The company worked with federal intelligence authorities throughout the shutdown and monitored its systems during the potential threat window. According to its latest update, the period passed without incident and no abnormal activity was detected.
Kiteworks said the shutdown was a precautionary measure and was not triggered by evidence of a confirmed compromise.
Critical Vulnerability Discovered During Shutdown
During the shutdown, Kiteworks identified a previously unknown critical vulnerability in a capability enabled for less than 1% of its customer base.
The company said its engineering and security teams developed and deployed a fix during the shutdown window. Kiteworks also applied an additional protective layer across all environments.
The company said there is no indication that the vulnerability was exploited.
Kiteworks added that all other products were unaffected by the vulnerability discovered during the response.
No Evidence of Kiteworks Systems Compromise
Kiteworks said it has no indication that its systems or customer environments were compromised.
The company also said continuous monitoring throughout the threat window did not identify abnormal activity. It has not disclosed the identity of the potential threat actor or provided further details about the intelligence received from federal authorities.
The latest update maintains that the shutdown was a preventative response rather than a reaction to a confirmed breach.
Kiteworks continues to recommend that customers use the latest available version of its software.
Kiteworks Systems Restored
With the threat window now passed, Kiteworks has restored its hosted customer environments and said customers can bring their own systems back online if they have not already done so.
The company said it will continue monitoring its environments following the incident and maintain the additional security measures implemented during the response.
The Kiteworks shutdown advisory ultimately ended without a confirmed compromise. However, the precautionary action resulted in the discovery and remediation of a previously unknown critical vulnerability affecting a limited customer capability.
Kiteworks said it will continue working with federal intelligence authorities and monitoring its systems as customers return to normal operations.






































