Progress Software has alerted customers using its ShareFile secure file-sharing platform to take on-premises Storage Zone Controllers offline without delay. The company described the threat as "credible" and external, though it did not disclose further details about the nature or origin of the risk.
What happened
On 10 July 2026, Progress Software sent emails to ShareFile customers advising them to shut down their Storage Zone Controller servers. The advisory applies specifically to on-premises deployments of the software, which is used for secure file sharing and collaboration. Progress has not released information about whether cloud-based ShareFile services are affected or if any customers have already been compromised.
The company has not provided indicators of compromise, attack vectors, or mitigation steps beyond the immediate shutdown recommendation. No timeline has been given for when servers can be safely restored or what remediation will involve.
What we don't know yet
At this stage, the following details remain unclear:
- The specific vulnerability or attack method being exploited
- Whether any data breaches or unauthorized access have occurred
- When Progress will issue further guidance or a patch
- Whether cloud-hosted ShareFile instances are impacted
- The geographic or sector distribution of affected customers
Progress has not responded to requests for additional comment beyond the initial advisory.
Companies mentioned
Automated pipeline · Security
Synthesized from 1 industry feed on 10 Jul 2026. Passed independent editor verification (score 95/100) before publication. Style guide v1.4.
Sources
Decision trail
- Checking for duplicates — Deduped batch of 1 candidates
- Checking for duplicates — New story No previously published or in-pipeline article covers this ShareFile security threat.
- Checking for duplicates — New story pre_write:; No previously published or in-pipeline article covers this ShareFile security threat.
- Writing the article — Brief only thin sources; quick-read mode
- Writing the article — Draft created article_id=309 slug=progress-warns-sharefile-users-to-shut-down-on-prem-servers quick_read=1
-
Editor review — Approved
- Score: 95/100
- Factual grounding: The draft states the advisory was sent 'On 10 July 2026', but the source only confirms the advisory was sent on the publication date (10 July 2026). The source does not explicitly state the email was sent on that calendar date, only that the publication occurred then. The date should be omitted or clarified as 'today' if the source does not confirm the exact calendar date.
- Style compliance: The standfirst uses the phrase 'flags credible external threat', which slightly echoes the source phrasing ('describes as a credible external security threat'). While the meaning is preserved, the phrasing could be further restructured to avoid similarity.
- Generating reader Q&A — Generated 3 items
- Assigning hero image — Reused library image reused image #6
- Linking related stories — Linked 0 relations from 255 candidates
- Publishing — Published progress-warns-sharefile-users-to-shut-down-on-prem-servers
- Mastodon — Posted https://mstdn.social/@hostingpaper/116896955241713777

Discussion · coming soon
Be the first to join the thread when community discussion launches.