Klue hack results in data breach at several cybersecurity firms
AI-summarised brief · reviewed before publication
A hacking group, Icarus, has taken credit for a data breach at market intelligence provider Klue, which allowed hackers to steal data from several of the company's corporate customers, including prominent cybersecurity firms. The breach occurred after hackers gained access to Klue's systems using a compromised legacy credential on June 12. Several companies have confirmed they had data stolen, including Gong, Jamf, and Snyk. Klue has disconnected its integrations to prevent further access to customers' data and has called in incident response firm CrowdStrike.
💡 Why It Matters
- · The breach highlights the vulnerability of companies that hold the keys to other companies' cloud databases, making them a prime target for hackers.
- · By breaching firms like Klue, hackers can steal data from a large number of organizations at once, demonstrating the need for robust cybersecurity measures in the industry.