"Acronis Clarifies Hack Impact Following Data Leak"

Swiss data protection firm Acronis has clarified that a single customer’s account has been compromised after a hacker leaked gigabytes of information allegedly stolen from the company.   On a popular cybercrime forum, a hacker recently announced that they were “leaking data of a cybersecurity company called Acronis,” claiming that they hacked the company because they were bored and wanted to humiliate them.  The hacker is the same one who recently offered to sell 160 Gb of data stolen from computer giant Acer.  In the case of Acronis, the cybercriminal published a 12 Gb archive file allegedly containing certificate files, command logs, system configurations and information logs, filesystem archives, scripts, and backup configuration data.  Acronis offers backup, disaster recovery, antivirus, and endpoint protection management solutions.  After the incident came to light, the company clarified that the leaked data appears to come entirely from a single customer’s account.  The company noted that based on their investigation so far, the credentials used by a single specific customer to upload diagnostic data to Acronis support had been compromised.  The company stated that they are working with that customer and have suspended account access as they try to resolve the issue.  The company noted that no other system or credential had been affected.  There is no evidence of any other successful attack, nor is there any data in the leak that is not in the folder of that one customer.  Acronis has also separately clarified that none of its products are impacted by the breach.

 

SecurityWeek reports: "Acronis Clarifies Hack Impact Following Data Leak"

Submitted by Anonymous on