Remote IT management software vendor Kaseya was close to fixing the vulnerabilities in its software before the attack hit. The administrators for REvil, or one of its affiliates, exploited several vulnerabilities in the software vendor’s VSA software. Some victims are now being asked for as much as $5 million in ransom, according to Bleeping. It’s unclear if REvil somehow knew in advance that the patches were coming, which suggests the attackers may have moved with more haste to get ahead of the patches.”]
Source: https://www.bankinfosecurity.com/kaseya-was-working-on-patches-before-ransomware-attack-a-16987

