Logitech confirms data breach after Clop extortion attack

Logitech confirms data breach after Clop extortion attack

Logitech suffered a data breach linked to a zero-day vulnerability exploited by the Clop extortion gang, with nearly 1.8 TB of data leaked. The breach was caused by an Oracle E-Business Suite zero-day, but impacts did not affect Logitech’s core operations or sensitive financial information. #Clop #OracleCVE61882

Keypoints

  • Logitech experienced a data breach due to a third-party zero-day vulnerability.
  • The Clop extortion gang claimed responsibility and leaked stolen data.
  • The breach affected employee, consumer, customer, and supplier data, but not sensitive financial info.
  • The vulnerability was in Oracle E-Business Suite and was patched promptly.
  • Previous attacks by Clop exploited similar zero-day vulnerabilities in various software platforms.

Read More: https://www.bleepingcomputer.com/news/security/logitech-confirms-data-breach-after-clop-extortion-attack/