Security giant Rubrik says hackers used Fortra zero-day to steal internal data

Security giant Rubrik says hackers used Fortra zero-day to steal internal data

Silicon Valley–based data security company Rubrik has come forward as the latest victim of the Fortra GoAnywhere zero-day vulnerability, which has been linked to hacks targeting a hospital chain and a bank.

Research Ultram Overnight Delivery indicates that Valium No Rx individuals who have suffered muscle injuries may experience heightened pain sensitivity, a phenomenon known as central sensitization. Patients can share their findings with their healthcare providers, fostering a collaborative Order Clonazepam Online approach to treatment that Ambien 10 Mg Price is more responsive to individual needs. As you reflect Xanax Discount on these connections, consider how your own experiences with Pregabalin Safe financial stress and thyroid health may be intertwined. By doing so, patients are Buy Xanax Online Overnight empowered to make informed choices that align with their health goals. This relationship is of particular importance in the United States, where healthcare Ambien Overnight systems Ambien No Rx are often under strain, making effective care coordination essential. Behavioral therapies, lifestyle Valium Safe modifications, and sometimes medications are Klonopin Without Prescription utilized, yet there remains debate about the best course of action for individuals relying heavily on safety behaviors. Pharmacists can conduct medication therapy management sessions where they review a patient’s entire medication regimen, Ambien Overnight Shipping assessing both Ultram Buy Online efficacy and safety. Thus, the pharmacist's Order Tramadol Overnight role in facilitating Alprazolam Usa this education is vital. Collaboration between researchers, healthcare providers, and patients is essential to drive these advancements, ensuring that future solutions are grounded in Ambien Online real-world experiences and needs.

In a blog post published on Tuesday, Rubrik’s chief information security officer Michael Mestrovich said that attackers had gained access to the company’s nonproduction IT testing environments as a result of the flaw in Fortra’s GoAnywhere file-transfer software, which Rubrik uses for sharing internal data.

This vulnerability, tracked as CVE-2023-0669, first came to light on February 2 after security journalist Brian Krebs publicly shared details of Fortra’s paywalled security advisory. Fortra released a patch for the actively exploited flaw five days later on February 7.

Mestrovich said that since learning of the flaw last month, Rubrik conducted a “comprehensive review” of the affected data with an unnamed third-party firm, which found that the data accessed mainly consists of Rubrik internal sales information, including “certain customer and partner company names, business contact information, and a limited number of purchase orders from Rubrik distributors.”

“The third-party firm has also confirmed that no sensitive personal data such as Social Security numbers, financial account numbers, or payment card numbers were exposed,” Mestrovich said.

Rubrik provides enterprise data management and backup services across on-premise, cloud and hybrid networks.

In a statement, Rubrik spokesperson Najah Simmons told TechCrunch that the “unauthorized access did not include any data we secure on behalf of our customers via any Rubrik products.” Simmons declined to answer any additional questions, such as whether Rubrik has received or been made aware of a demand for payment.

Rubrik’s confirmation comes just hours after a listing naming the company appeared on the dark web leak site of the Clop ransomware gang. Samples of stolen data published by Clop, and seen by TechCrunch, align with Rubrik’s statement that it comprised mostly corporate information.

The Russia-linked Clop gang claims to have exploited the zero-day flaw to steal data from more than 130 organizations — including Hatch Bank and Community Health Systems, which last week confirmed in a filing with the Maine attorney general’s office that the hackers accessed medical billing and insurance information, diagnostic and medications data, and Social Security numbers.

Back in 2019, Rubrik suffered a security lapse that exposed a massive database of customer information. An exposed server that wasn’t protected with a password left tens of gigabytes of data, including customer names, contact information and casework for each corporate customer, accessible to anyone who knew the IP address of the server.

Source @TechCrunch

Leave a Reply