Teaming up with... AVIVA

Welcome to the UKGI weekly regulation update service for Aviva ABC brokers

We hope you find the Updates useful. If you are
interested in subscribing to our affordable
ABC compliance support package, please
email us at ABC@ukgigroup.com or
call UKGI on our dedicated ABC
contact line 01925 767893.

FCA publishes a warning about the use of MOVEit software

Link(s):MOVEit vulnerability | FCA Latest cyber issues | ICO

Context

The FCA has published a web page in relation to a vulnerability to the file transfer application MOVEit that has been impacting organisations and exposing personal data.

Key points to note

The National Cyber Security Centre (NCSC) is working with affected businesses to understand and respond to this incident.  The FCA is encouraging all firms to:

  • check if they or any companies in their supply chain have used MOVEit and to understand the extent of any impact; and
  • review the Indicators of Compromise (IOCs) and follow the risk remediation advice and patches. These can be found on the Progress website. (Progress is the vendor of the MOVEit software.)

Any operational impacts due to this issue should be escalated via normal supervisory reporting processes. You are required to report incidents to the FCA.

For organisations directly affected, Progress has issued advice on mitigating this vulnerability. See the NCSC website for regular updates on this incident.

Next actions

None – for information and awareness.