Cl0p attached company names to nearly 50 masked entries on its leak site on August 12, and Philips is one of them. Shell, Fiserv and GE appear on the same list. Reuters reported the claims on August 13, and Philips said it "identified and contained an attempted cybersecurity compromise of a specific enterprise server related to internal data," with customer environments unaffected. The group reached its victims through CVE-2026-12569, a flaw in PTC Windchill PDMLink and FlexPLM, the product lifecycle management software used across engineering and manufacturing.
The flaw is deserialization of untrusted data, CWE-502, scored 9.8 on CVSS v3.1 and 9.3 on v4, and exploitation needs no credentials. Attackers chain a pre-authentication information disclosure in the FlexPLM WSDL endpoint with a server-side flaw in the Windchill login servlet, then drop JSP web shells for persistence. The published hunt pattern is a sixteen character hex filename ending in .jsp under the /Windchill/login/ path.
PTC shipped fixed releases on June 17. First in the wild exploitation was observed the next day. CISA added the CVE to its Known Exploited Vulnerabilities catalog on June 25, and PTC warned of heightened threat activity on June 26. From July 19, companies began receiving extortion emails referencing a "Windchill PDMLink module serious data leak." Masked leak site entries followed on August 5, names on August 12.
For a device manufacturer the target choice is the point. A PLM system holds CAD models, change orders, supplier records, and the engineering documentation behind regulatory submissions, so a single server can expose the technical file for an entire portfolio. ReliaQuest lists medtech among the sectors hit. Researchers counted roughly 80 Windchill instances reachable from the internet in July, 80 percent of them in the United States.
Cl0p ran the same play against MOVEit file transfer servers in 2023 and Oracle E-Business Suite last year: find one flaw in a widely deployed enterprise application, exploit it quietly at scale, then extort everyone at once. Brandon Parsons of Ascent Solutions describes the group as "professional data extortionists" who pick the vulnerability first and discover their victims afterward. None of the claims have been independently verified.
Philips describes the good case, a single contained server that stayed isolated. The harder question lands on every manufacturer that ran Windchill through June and July, because the patch date and the first exploitation date are one day apart, and patching does not evict a web shell that is already in place. Treat the PLM like the regulated system it feeds: patch on disclosure, keep it off the open internet, and run the review as incident response rather than routine maintenance.