State of Cybercrime:
Cl0p's Blueprint Heist
If your company runs PTC Windchill, Cl0p may already have your blueprints.
Forty-plus companies. One unpatched hole in PTC's product lifecycle management software. A custom-built tool, like a Windchill-shaped skeleton key, that CL0p used to unlock every credential in the vault. Shell, GE, Philips — all on the list.
On the next episode of State of Cybercrime, Matt and David break down exactly how this exploitation campaign works, and what it means if your engineering data has ever touched Windchill.
Plus: 1,200 rogue OpenAI agents that hacked Hugging Face on their own, the 12th Langflow bug exploited in 2026, and a JFrog flaw letting attackers forge admin access to your software supply chain.
Join over 2,000 security pros & get the latest cybercrime news!
Your seat is saved!
About the series
In today's digital landscape, no industry is safe from cybercrime. Hackers continue to exploit vulnerabilities across sectors, leading to highly destructive breaches.
Our State of Cybercrime series sheds light on the latest high-profile attacks while providing actionable insights across every industry.
This episode's segments include...
- Is there any good news?
- AI Vey — because we can't not talk about AI
- The latest Vulnerable Vulnerabilities
- The Highway to the Danger Zone — vulnerabilities you should be patching this week
- Live Q&A
Show hosts:
Matt Radolec
Field CTO, Varonis
David Gibson
Senior VP of Strategic Programs, Varonis
Episode 47
Episode 46
Episode 44