GE · News · 20260819N
Supply Chain Cybersecurity Risk
GENERAL ELECTRIC CO · 2026-08-19 · Importance 34 · Surprise 42
The Russian-speaking Clop cybercriminal group reportedly exploited a zero-day vulnerability in PTC’s Windchill and FlexPLM software. General Electric was among the affected organizations, with large volumes of engineering data reportedly stolen. The incident highlights third-party software concentration risk and may require immediate patching and related cybersecurity remediation, although no financial impact or remediation cost was reported.
Key facts
- On 2026-08-19, the Russian-speaking cybercriminal group Clop executed a major cyberattack exploiting a critical zero-day vulnerability in PTC's Windchill and FlexPLM software that impacted General Electric, with large volumes of engineering data reportedly stolen. source