share_log

'Everbridge Warns Of Corporate Systems Breach Exposing Business Data' - Bleeping Computer

'Everbridge Warns Of Corporate Systems Breach Exposing Business Data' - Bleeping Computer

“Everbridge 警告企业系统漏洞会暴露业务数据”-Bleeping Computer
Benzinga ·  05/30 11:48

Everbridge, an American software company focused on crisis management and public warning solutions, notified customers that unknown attackers had accessed files containing business and user data in a recent corporate systems breach.

美国软件公司Everbridge专注于危机管理和公共警报解决方案,通知客户最近公司系统遭受攻击者访问包含业务和用户数据的文件。

The company provides public warning, crisis management, and risk intelligence services to over 6,500 customers worldwide, including the U.S. Army, the Hartsfield-Jackson Atlanta International Airport, and the countries of Norway and Australia, among others.

该公司向全球6500多个客户提供公共警报、危机管理和风险情报服务,包括美国军方、亚特兰大亚特兰大国际机场和挪威、澳洲等国家。

The attackers were detected on the company's network last Tuesday, May 21. They breached Everbridge's corporate systems using information collected in a previous phishing attack targeting some of its employees.

攻击者于5月21日星期二被发现进入公司网络,利用在之前针对其部分员工的网络钓鱼攻击中收集的信息入侵了Everbridge的公司系统。

Jeff Young, Everbridge's Vice President of Corporate Communications, told BleepingComputer that no evidence indicates a ransomware attack and that the company promptly notified relevant law enforcement agencies of the incident.

Everbridge的企业传媒副总裁杰夫·杨告诉BleepingComputer,没有证据表明勒索软件攻击,并称公司迅速通知了相关执法机构。

"While our investigation is ongoing and in its early stages, we are aware that the unauthorized party responsible for this activity has accessed a limited number of files on our corporate network containing certain business related data, including instances of admin user and limited other users' contact information, information about the subscribed Everbridge services, and enabled access methods," the company told customers in a breach notification seen by BleepingComputer.

该公司在泄漏通知中告诉客户:虽然我们的调查仍在进行中且处于早期阶段,但我们已经知道,负责该活动的未经授权方已访问了公司网络上少量含有某些业务相关数据的文件,包括管理员用户和少量其他用户的联系信息,有关已订阅的Everbridge服务的信息以及已启用的访问方法。

A source close to the investigation told BleepingComputer that customer information was exposed in the corporate data accessed by the threat actors, and those impacted are being notified.

接近调查的消息人士告诉BleepingComputer,威胁演员在访问公司数据时公开了客户信息,并通知受影响的客户。

The same source said that Everbridge is working with incident response experts from Mandiant and Stroz Friedberg to assess the attack's severity and impact.

同一消息人士表示,Everbridge正在与Mandiant和Stroz Friedberg的事件响应专家合作,评估袭击的严重程度和影响。

MFA required on all accounts by June 3

将于2024年6月3日要求所有账户使用多因素身份验证

Given the increasing risk of phishing attacks, Everbridge also shared information with each account administrator on how to identify and guard against such attacks and urged customers to enable multi-factor authentication (MFA). This additional layer of protection will also be force-enabled on all accounts by Monday.

鉴于网络钓鱼攻击的风险越来越高,Everbridge还向每个账户管理员共享如何识别和防范此类攻击的信息,并敦促客户启用多因素身份验证(MFA)。此外,该公司还将在周一强制启用所有账户的额外保护层。

"We strongly encourage all customers to enable MFA on all administrator accounts, and we will be accelerating enforcement of MFA for all customers in the coming days," the company said.

该公司表示:“我们强烈建议所有客户在所有管理员账户上启用MFA,并将在未来几天加速对所有客户强制实施MFA。”

"Everbridge will enable multi-factor authentication (MFA) for all accounts by June 3, 2024. If your organization supports Single Sign-On (SSO), we strongly recommend you enable SSO for your Everbridge login as soon as possible."

“Everbridge将于2024年6月3日为所有账户启用多因素身份验证(MFA)。如果您的组织支持单点登录(SSO),我们强烈建议您尽快启用SSO进行Everbridge登录。”

Everbridge began operating in 2002 as 3N Global and went public in 2016 on the Nasdaq stock exchange following a $90 million IPO. In 2023, it reported revenues of $449 million and now has more than 1,800 employees.

Everbridge于2002年作为3N Global开始运营,并在2016年通过9000万美元的首次公开募股在纳斯达克证券交易所上市。2023年,其报告收入为$449 million,现在拥有超过1800名员工。

The company says it provides public warning, crisis management, and risk intelligence services to over 6,500 customers worldwide, including the U.S. Army, the Hartsfield-Jackson Atlanta International Airport, and the countries of Norway and Australia, among others.

该公司表示,向全球超过6500个客户提供公共警报、危机管理和风险情报服务,包括美国军方、亚特兰大亚特兰大国际机场和挪威、澳洲等国家。

Investment giant Thoma Bravo agreed to take Everbridge private on March 1, 2024, in a $1.8 billion all-cash deal.

投资巨头托马·布拉沃(Thoma Bravo)于2024年3月1日同意以18亿美元的全现金交易方式将Everbridge私有化。

声明:本内容仅用作提供资讯及教育之目的,不构成对任何特定投资或投资策略的推荐或认可。 更多信息
    抢沙发