Kiteworks advises customers to take servers offline amid imminent attack warning

Kiteworks told customers worldwide to shut down their servers for six hours on Saturday after receiving credible federal threat intelligence about a possible imminent attack. The company said it had no evidence of a compromise and described the advisory as precautionary, recommending version 9.5.1. The shutdown window covered time zones from Australian Eastern Standard Time to Pacific Daylight Time.
Kiteworks, which makes secure file-transfer and communications tools, sent customers a warning attributed to CISO Frank Balonis. It cited credible law-enforcement intelligence about a possible weekend attack and asked organizations to take systems offline for six hours, even when not internet-facing.
The advised window ran from Australian Eastern Standard Time to Pacific Daylight Time; Central Europe was told 4–10 a.m. Saturday, while New York’s window was 10 p.m. Friday to 4 a.m. Saturday. Kiteworks said no compromise was known, pointed to version 9.5.1, and did not confirm a zero-day.
If the warning reflects a real threat, organizations relying on Kiteworks—including government agencies, banks, and large enterprises—could face disrupted file transfers and delayed operations during the shutdown. A successful intrusion might expose sensitive documents, raising privacy, compliance, and extortion risks. Even without a confirmed breach, the advisory may push other secure file-sharing customers to patch, monitor, and rehearse contingency plans, potentially increasing short-term caution across the sector.