<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: &amp;quot;Qlik Sense Exploited in Cactus Ransomware Campaign&amp;quot;: Is this true?  Does Qlik have any security updates to deal with this? in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2143055#M29495</link>
    <description>&lt;P&gt;Hello all,&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/14232"&gt;@diagonjope&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/47012"&gt;@daveatkins&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for posting here.&lt;/P&gt;
&lt;P&gt;As it is also explained on&amp;nbsp;&lt;A href="https://www.arcticwolf.com/resources/blog/cve-2023-41265-cve-2023-41266-cve-2023-48365/" target="_blank" rel="noopener"&gt;https://www.arcticwolf.com/resources/blog/cve-2023-41265-cve-2023-41266-cve-2023-48365/&lt;/A&gt;&amp;nbsp;these vulnerabilities were already mentioned some time ago, we strongly recommend to stay on the mentioned patches or newest ones, as newest ones will have those fixes plus more fixes included as patches are cumulative as per the release notes.&lt;/P&gt;
&lt;P&gt;Furthermore,&amp;nbsp; I strongly recommend you to subscribe to our Support Blog so next time you do not miss such communications and other relevant ones about Qlik products.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Support-Updates/bg-p/qlik-support-updates-blog" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Support-Updates/bg-p/qlik-support-updates-blog&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Support-Updates/Qlik-Sense-Enterprise-for-Windows-New-Security-Patches-Available/ba-p/2108549" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Support-Updates/Qlik-Sense-Enterprise-for-Windows-New-Security-Patches-Available/ba-p/2108549&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Critical-Security-fixes-for-Qlik-Sense-Enterprise-for-Windows/tac-p/2120510" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Official-Support-Articles/Critical-Security-fixes-for-Qlik-Sense-Enterprise-for-Windows/tac-p/2120510&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 30 Nov 2023 21:21:54 GMT</pubDate>
    <dc:creator>Albert_Candelario</dc:creator>
    <dc:date>2023-11-30T21:21:54Z</dc:date>
    <item>
      <title>"Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2142969#M29493</link>
      <description>&lt;P&gt;Greetings!&lt;/P&gt;
&lt;P&gt;I just saw this article about a supposed ransomware security risk in QliK Sense and would like to receive instructions on what to do (if true):&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.arcticwolf.com/resources/blog/qlik-sense-exploited-in-cactus-ransomware-campaign/" target="_blank" rel="noopener"&gt;https://www.arcticwolf.com/resources/blog/qlik-sense-exploited-in-cactus-ransomware-campaign/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Customers are asking us about it, but I can't find anything related to this issue in the community.&amp;nbsp; Please advise and referer to &lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/14232"&gt;@diagonjope&lt;/a&gt;&amp;nbsp;in your note, so that I can get a notification.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;++José&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2023 16:02:38 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2142969#M29493</guid>
      <dc:creator>diagonjope</dc:creator>
      <dc:date>2023-11-30T16:02:38Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2143008#M29494</link>
      <description>&lt;P&gt;we patched our servers earlier this year; can someone from Qlik please link/list the appropriate patch levels here again?&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2023 17:42:51 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2143008#M29494</guid>
      <dc:creator>daveatkins</dc:creator>
      <dc:date>2023-11-30T17:42:51Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2143055#M29495</link>
      <description>&lt;P&gt;Hello all,&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/14232"&gt;@diagonjope&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/47012"&gt;@daveatkins&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for posting here.&lt;/P&gt;
&lt;P&gt;As it is also explained on&amp;nbsp;&lt;A href="https://www.arcticwolf.com/resources/blog/cve-2023-41265-cve-2023-41266-cve-2023-48365/" target="_blank" rel="noopener"&gt;https://www.arcticwolf.com/resources/blog/cve-2023-41265-cve-2023-41266-cve-2023-48365/&lt;/A&gt;&amp;nbsp;these vulnerabilities were already mentioned some time ago, we strongly recommend to stay on the mentioned patches or newest ones, as newest ones will have those fixes plus more fixes included as patches are cumulative as per the release notes.&lt;/P&gt;
&lt;P&gt;Furthermore,&amp;nbsp; I strongly recommend you to subscribe to our Support Blog so next time you do not miss such communications and other relevant ones about Qlik products.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Support-Updates/bg-p/qlik-support-updates-blog" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Support-Updates/bg-p/qlik-support-updates-blog&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Support-Updates/Qlik-Sense-Enterprise-for-Windows-New-Security-Patches-Available/ba-p/2108549" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Support-Updates/Qlik-Sense-Enterprise-for-Windows-New-Security-Patches-Available/ba-p/2108549&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.qlik.com/t5/Official-Support-Articles/Critical-Security-fixes-for-Qlik-Sense-Enterprise-for-Windows/tac-p/2120510" target="_blank" rel="noopener"&gt;https://community.qlik.com/t5/Official-Support-Articles/Critical-Security-fixes-for-Qlik-Sense-Enterprise-for-Windows/tac-p/2120510&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2023 21:21:54 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2143055#M29495</guid>
      <dc:creator>Albert_Candelario</dc:creator>
      <dc:date>2023-11-30T21:21:54Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2143096#M29497</link>
      <description>&lt;P&gt;Thank you,&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/16958"&gt;@Albert_Candelario&lt;/a&gt;&amp;nbsp;!&lt;/P&gt;</description>
      <pubDate>Fri, 01 Dec 2023 00:54:26 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2143096#M29497</guid>
      <dc:creator>diagonjope</dc:creator>
      <dc:date>2023-12-01T00:54:26Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2446456#M29498</link>
      <description>&lt;P&gt;Is this version affected? It is not listed?&lt;/P&gt;
&lt;P&gt;13.82.4 20200717&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Apr 2024 15:59:58 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2446456#M29498</guid>
      <dc:creator>w7</dc:creator>
      <dc:date>2024-04-29T15:59:58Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447356#M29499</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/297369"&gt;@w7&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Thanks for posting.&lt;/P&gt;
&lt;P&gt;Could you confirm the version by naming the "Month" "Year" and patch that you use?&lt;/P&gt;
&lt;P&gt;Thanks in advance.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;</description>
      <pubDate>Wed, 01 May 2024 11:27:35 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447356#M29499</guid>
      <dc:creator>Albert_Candelario</dc:creator>
      <dc:date>2024-05-01T11:27:35Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447371#M29500</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Version = 13.82.4&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;YYYYMMDD&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Year = 2020&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Month = 07&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 May 2024 12:19:34 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447371#M29500</guid>
      <dc:creator>w7</dc:creator>
      <dc:date>2024-05-01T12:19:34Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447388#M29501</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/297369"&gt;@w7&lt;/a&gt;&amp;nbsp;: "&lt;SPAN&gt;All prior versions of Qlik Sense Enterprise on Windows are affected, including releases such as May 2022, February 2022, and earlier."&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 01 May 2024 13:15:32 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447388#M29501</guid>
      <dc:creator>David_Friend</dc:creator>
      <dc:date>2024-05-01T13:15:32Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447742#M29502</link>
      <description>&lt;P&gt;Thanks, please upgrade to version that does include the fix.&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Albert&lt;/P&gt;</description>
      <pubDate>Thu, 02 May 2024 08:49:36 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2447742#M29502</guid>
      <dc:creator>Albert_Candelario</dc:creator>
      <dc:date>2024-05-02T08:49:36Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2448083#M29503</link>
      <description>&lt;P&gt;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/16958"&gt;@Albert_Candelario&lt;/a&gt;&amp;nbsp; We are using Qlik Cloud in our organization. Has the cactus ransomware issue affected the cloud version as well? If so, has there been any patches applied to prevent this issue?&lt;/P&gt;</description>
      <pubDate>Thu, 02 May 2024 18:53:11 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2448083#M29503</guid>
      <dc:creator>SudharshanK</dc:creator>
      <dc:date>2024-05-02T18:53:11Z</dc:date>
    </item>
    <item>
      <title>Re: "Qlik Sense Exploited in Cactus Ransomware Campaign": Is this true?  Does Qlik have any security updates to deal with this?</title>
      <link>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2448084#M29504</link>
      <description>&lt;P&gt;&lt;SPAN&gt;From the article:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;This issue only impacts Qlik Sense Enterprise for Windows. Other Qlik products including Qlik Cloud and QlikView are NOT impacted.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 May 2024 18:56:11 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/quot-Qlik-Sense-Exploited-in-Cactus-Ransomware-Campaign-quot-Is/m-p/2448084#M29504</guid>
      <dc:creator>David_Friend</dc:creator>
      <dc:date>2024-05-02T18:56:11Z</dc:date>
    </item>
  </channel>
</rss>

