<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq" -->

---
title: Kiteworks urges 6-hour server shutdown over potential...
description: Secure file-sharing vendor Kiteworks urged customers worldwide to shut down their servers for a six-hour window on Saturday, September 26, after receiving...
canonical: https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: Kiteworks urges 6-hour server shutdown over potential zero-day attacks | daily.dev
og:description: Secure file-sharing vendor Kiteworks urged customers worldwide to shut down their servers for a six-hour window on Saturday, September 26, after receiving...
og:url: https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq
og:image: https://api.daily.dev/og/posts/6Bj7hhejq.png
og:image:alt: Kiteworks urges 6-hour server shutdown over potential zero-day attacks
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# Kiteworks urges 6-hour server shutdown over potential zero-day attacks

**[BleepingComputer](https://daily.dev/sources/bleepingcomputer)** · 3 min read · 0 upvotes · 0 comments

## Summary

Secure file-sharing vendor Kiteworks urged customers worldwide to shut down their servers for a six-hour window on Saturday, September 26, after receiving credible threat intelligence from federal law enforcement about a possible imminent attack on Kiteworks systems. CISO Frank Balonis reportedly emailed customers recommending the precautionary shutdown, with regional windows spanning from Central Europe (4-10 a.m.) to New York (10 p.m. Friday-4 a.m. Saturday). Kiteworks says it has no evidence of a confirmed breach and that all known vulnerabilities are patched in the current 9.5.1 release, though support staff told German outlet Heise the move was meant to guard against potential zero-day attacks. The company's file-sharing platforms serve government, financial, and enterprise clients, making them attractive targets for data-theft extortion groups like Clop, which has previously exploited similar platforms including Accellion FTA, GoAnywhere MFT, SolarWinds Serv-U, Cleo, and MOVEit Transfer.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://www.bleepingcomputer.com/news/security/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks>

## Questions this post answers

### Why is Kiteworks telling customers to shut down their servers for six hours this weekend?

Kiteworks received credible threat intelligence from federal law enforcement indicating a threat actor may attempt to target some customer systems imminently. The company is not aware of any actual compromise and describes the shutdown as a precaution rather than a response to a confirmed breach. Customer support reportedly said the move is meant to guard against potential zero-day attacks, though no specific vulnerability has been confirmed.

_Teams running Kiteworks or similar file-transfer platforms can track fast-moving security advisories like this on daily.dev._

### What time should I shut down my Kiteworks server for the recommended precaution window?

The recommended shutdown window varies by region: Central European customers were told to shut down between 4:00 a.m. and 10:00 a.m. on Saturday, September 26, while New York customers were told to shut down from 10:00 p.m. Friday to 4:00 a.m. Saturday. Kiteworks recommends shutting systems down early and taking them offline even if not internet-facing.

_Admins juggling regional advisory windows like this one can follow the latest security guidance on daily.dev._

### Which vulnerabilities does Kiteworks say are fixed in its current release?

Kiteworks states that all known vulnerabilities are addressed in its current release, version 9.5.1, and recommends customers run the latest version. The company stresses that this shutdown advisory is precautionary and not tied to a confirmed exploited flaw in that version.

_Anyone deciding whether to patch or pause a file-transfer deployment can keep tabs on advisories like this via daily.dev._

## Similar posts on daily.dev

- [Progress urges ShareFile customers to shut down servers over "credible" threat](https://daily.dev/posts/progress-urges-sharefile-customers-to-shut-down-servers-over-credible-threat-nilsinzqc) · BleepingComputer · 2 upvotes · 0 comments
- [Progress orders emergency ShareFile server shutdown over mystery security threat](https://daily.dev/posts/progress-orders-emergency-sharefile-server-shutdown-over-mystery-security-threat-y5p3nyqak) · The Register · 1 upvotes · 0 comments

---

[View this post on daily.dev](https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"Kiteworks urges 6-hour server shutdown over potential zero-day attacks","url":"https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq"},"datePublished":"2026-09-25T21:44:35.830Z","dateModified":"2026-09-25T22:26:12.094Z","description":"Secure file-sharing vendor Kiteworks urged customers worldwide to shut down their servers for a six-hour window on Saturday, September 26, after receiving...","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/099ab45260c9d6abdf9f1a8a0d306603?_a=AQAEuop","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/099ab45260c9d6abdf9f1a8a0d306603?_a=AQAEuop","isAccessibleForFree":true,"articleSection":"BleepingComputer","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"BleepingComputer","logo":"https://media.daily.dev/image/upload/s--as8nJ3qy--/f_auto,q_auto/v1774959951/logos/bleepingcomputer?_a=BAMAMiWQ0","url":"https://daily.dev/sources/bleepingcomputer"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":0},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"","timeRequired":"PT3M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"BleepingComputer","item":"https://daily.dev/sources/bleepingcomputer"},{"@type":"ListItem","position":3,"name":"Kiteworks urges 6-hour server shutdown over potential zero-day attacks"}]}
{"@context":"https://schema.org","@type":"FAQPage","@id":"https://daily.dev/posts/kiteworks-urges-6-hour-server-shutdown-over-potential-zero-day-attacks-6bj7hhejq#faq","mainEntity":[{"@type":"Question","name":"Why is Kiteworks telling customers to shut down their servers for six hours this weekend?","acceptedAnswer":{"@type":"Answer","text":"Kiteworks received credible threat intelligence from federal law enforcement indicating a threat actor may attempt to target some customer systems imminently. The company is not aware of any actual compromise and describes the shutdown as a precaution rather than a response to a confirmed breach. Customer support reportedly said the move is meant to guard against potential zero-day attacks, though no specific vulnerability has been confirmed. Teams running Kiteworks or similar file-transfer platforms can track fast-moving security advisories like this on daily.dev."}},{"@type":"Question","name":"What time should I shut down my Kiteworks server for the recommended precaution window?","acceptedAnswer":{"@type":"Answer","text":"The recommended shutdown window varies by region: Central European customers were told to shut down between 4:00 a.m. and 10:00 a.m. on Saturday, September 26, while New York customers were told to shut down from 10:00 p.m. Friday to 4:00 a.m. Saturday. Kiteworks recommends shutting systems down early and taking them offline even if not internet-facing. Admins juggling regional advisory windows like this one can follow the latest security guidance on daily.dev."}},{"@type":"Question","name":"Which vulnerabilities does Kiteworks say are fixed in its current release?","acceptedAnswer":{"@type":"Answer","text":"Kiteworks states that all known vulnerabilities are addressed in its current release, version 9.5.1, and recommends customers run the latest version. The company stresses that this shutdown advisory is precautionary and not tied to a confirmed exploited flaw in that version. Anyone deciding whether to patch or pause a file-transfer deployment can keep tabs on advisories like this via daily.dev."}}]}
```

