As cited
Copy frozen at (site build).
breaches incidents
Klue says hackers stole credential from 2022 that led to customer data breaches
Klue disclosed that hackers obtained a credential from 2022 that remained active after a pilot program ended, which attackers subsequently used to breach a system containing customer data access keys. The credential should have been revoked but was not, allowing unauthorized access to customer information.
Why it matters: Klue customers and prospects need to understand the scope of exposed data and whether their information was accessed, while practitioners should audit their own credential lifecycle management practices to prevent similar lapses.
- Source published
- First seen by Cybersecurity Tracker