CVE Tools
Back to feed
Exploited in the wild PTC Windchill Clop data-breach PTC FlexPLM Shell

Shell investigates 'potential incident' after Clop data theft claims

BleepingComputer·By Sergiu Gatlan··3 min read
CVE Tools coverage

Major energy firm Shell has begun investigating a potential security incident following claims by the Clop ransomware group that they exfiltrated 89GB of sensitive data, including engineering drawings and facility reports. The theft is attributed to active exploitation of CVE-2026-12569, a critical input validation flaw in internet-facing instances of PTC Windchill and FlexPLM. CISA has added this vulnerability to its Known Exploited Vulnerabilities catalog, urging organizations to apply patches released by PTC and check for indicators of compromise.