Cl0p's Blueprint Heist | State of Cybercrime Ep. 51

Varonis
160 views September 11, 2026

If your company runs PTC Windchill, Cl0p may already have your blueprints. Forty-plus companies. One unpatched hole in PTC's product lifecycle management software. A custom-built tool that CL0p used to crack every password on the system like a Windchill-shaped skeleton key. Shell, GE, Philips — all on the list. On the next episode of State of Cybercrime, Matt and David break down exactly how this exploitation campaign works, and what it means if your engineering data has ever touched Windchill. Plus: 1,200 rogue OpenAI agents that hacked Hugging Face on their own, the 12th Langflow bug exploited in 2026, and a JFrog flaw letting attackers forge admin access to your software supply chain. More from Varonis ⬇️ Visit our website: https://www.varonis.com LinkedIn: linkedin.com/company/varonis X/Twitter: x.com/varonis Instagram: instagram.com/varonislife

Keyboard shortcuts

On. Switch them off if they collide with your assistive tools; ? still opens this sheet.

Go to

Press g then the letter.

  • gh Latest
  • gs Sources
  • gm Media
  • gv Videos
  • gp Podcasts
  • gc Calendar
  • gd Decoder
  • gz Dataviz
  • ga Datasets
  • gb Blog
  • gk Markets
  • gj Careers
  • gn Prompt Notebook

On this page

  • / Focus search, where there is one
  • t Back to top
  • ? This list
  • Esc Close