Mailchimp 'fesses up to second digital burglary in five months
(2023/01/19)
- Reference: 1674137809
- News link: https://www.theregister.co.uk/2023/01/19/mailchimp_fesses_up_to_2nd/
- Source link:
Email marketing service Mailchimp has confirmed intruders have gained access to more than 100 customer accounts after successfully deploying a social engineering attack.
This is the second data spill in five months and yet the company, [1]bought by Intuit for $12 billion in September 2021 , continues to tell customers – with a straight face – that it takes the "security of users' data seriously."
The latest digital burglary happened on January 11 when the resident security team spotted an "unauthorized actor accessing one of our tools used by Mailchimp customer-facing teams for customer support and account administration," the [2]company blog states .
[3]
The criminal used employee credentials to break into 133 Mailchimp customer accounts, though the business says there is no evidence currently that the compromise affected Intuit systems "or customer data beyond these accounts."
[4]
[5]
"After we identified evidence of an unauthorized actor, we temporarily suspended account access for Mailchimp accounts where we detected suspicious activity to protect our users' data," it says.
Mailchimp says it told the primary contacts for accounts on January 12 that their mail boxes had been accessed without permission.
[6]
No personal financial information was included in the data caught up in the break-in, and the business is not commenting further on the countermeasures being taken to galvanize security.
[7]The Guardian ransomware attack hits week two as staff told to work from home
[8]Email hijackers scam food out of businesses, not just money
[9]Rackspace rocked by 'security incident' that has taken out hosted Exchange services
[10]Intruders get their hands on user data in LastPass incident
One of the 133 accounts belongs to WooCommerce, provider of an open source e-commerce plugin for WordPress, as [11]first noted by TechCrunch . The business has subsequently written to its own clients to confirm some of their details – name, store URL, address and email – were exposed.
Mailchimp [12]suffered another break-in in August when it confirmed a criminal had accessed tools used by customer support and administration teams, via a social engineering attack, to gain entry to 214 Mailchimp accounts. In that incident, customer Digital Ocean decided to ditch Mailchimp's services.
Digital Ocean migrated services to an alternative provider and said a "very small" number of customers had seen crooks attempt to get into their accounts.
Clearly not all lessons that Mailchimp needed to learn from the first breach were taken on board. ®
Get our [13]Tech Resources
[1] https://www.theregister.com/2021/09/14/intuit_mailchimp_acquisition/
[2] https://mailchimp.com/en-gb/january-2023-security-incident/
[3] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0
[4] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[6] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[7] https://www.theregister.com/2023/01/04/guardian_ransomware_attack/
[8] https://www.theregister.com/2022/12/17/in_brief_security/
[9] https://www.theregister.com/2022/12/03/rackspace_security_incident_hosted_exchange/
[10] https://www.theregister.com/2022/12/01/lastpass/
[11] https://techcrunch.com/2023/01/18/mailchimp-hacked/
[12] https://www.theregister.com/2022/08/16/digital_ocean_dumps_mailchimp/
[13] https://whitepapers.theregister.com/
This is the second data spill in five months and yet the company, [1]bought by Intuit for $12 billion in September 2021 , continues to tell customers – with a straight face – that it takes the "security of users' data seriously."
The latest digital burglary happened on January 11 when the resident security team spotted an "unauthorized actor accessing one of our tools used by Mailchimp customer-facing teams for customer support and account administration," the [2]company blog states .
[3]
The criminal used employee credentials to break into 133 Mailchimp customer accounts, though the business says there is no evidence currently that the compromise affected Intuit systems "or customer data beyond these accounts."
[4]
[5]
"After we identified evidence of an unauthorized actor, we temporarily suspended account access for Mailchimp accounts where we detected suspicious activity to protect our users' data," it says.
Mailchimp says it told the primary contacts for accounts on January 12 that their mail boxes had been accessed without permission.
[6]
No personal financial information was included in the data caught up in the break-in, and the business is not commenting further on the countermeasures being taken to galvanize security.
[7]The Guardian ransomware attack hits week two as staff told to work from home
[8]Email hijackers scam food out of businesses, not just money
[9]Rackspace rocked by 'security incident' that has taken out hosted Exchange services
[10]Intruders get their hands on user data in LastPass incident
One of the 133 accounts belongs to WooCommerce, provider of an open source e-commerce plugin for WordPress, as [11]first noted by TechCrunch . The business has subsequently written to its own clients to confirm some of their details – name, store URL, address and email – were exposed.
Mailchimp [12]suffered another break-in in August when it confirmed a criminal had accessed tools used by customer support and administration teams, via a social engineering attack, to gain entry to 214 Mailchimp accounts. In that incident, customer Digital Ocean decided to ditch Mailchimp's services.
Digital Ocean migrated services to an alternative provider and said a "very small" number of customers had seen crooks attempt to get into their accounts.
Clearly not all lessons that Mailchimp needed to learn from the first breach were taken on board. ®
Get our [13]Tech Resources
[1] https://www.theregister.com/2021/09/14/intuit_mailchimp_acquisition/
[2] https://mailchimp.com/en-gb/january-2023-security-incident/
[3] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0
[4] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0
[6] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_security/cybercrime&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y8l3RCXLZkTWqLhZSFnU8gAAAFQ&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0
[7] https://www.theregister.com/2023/01/04/guardian_ransomware_attack/
[8] https://www.theregister.com/2022/12/17/in_brief_security/
[9] https://www.theregister.com/2022/12/03/rackspace_security_incident_hosted_exchange/
[10] https://www.theregister.com/2022/12/01/lastpass/
[11] https://techcrunch.com/2023/01/18/mailchimp-hacked/
[12] https://www.theregister.com/2022/08/16/digital_ocean_dumps_mailchimp/
[13] https://whitepapers.theregister.com/
Re: Wait, what?
Joe W
Maybe somebody who got too much spam from them broke in and switched that off?
It's Time
The Oncoming Scorn
To talk to the organ grinders, not the monkeys
ElRegioLPL
No idea how mailchimp remain the leader in this field. Their platform is too clunky and their prices... well. The less said the better, but there's a reason they got sold off for $12 billion.
Wait, what?
Mailchimp is a legit company? I used to get so much junk from them that I assumed they were spammers. Not so much recently, though.