Framework Notifies 'All Customers' of a Data Breach Via Compromised Metabase BI Service
"Framework has been sending out email notifications to customers alerting of a limited data breach in which customer information was accessed through a Metabase BI service zero-day exploit," writes Slashdot reader DuoDreamer. Data includes customer names, email addresses, phone numbers, and physical addresses. "Framework is investigating whether or not this included Framework for Business…
Framework has issued email notifications to all its customers, informing them of a limited data breach that occurred through a compromised Metabase BI service due to a zero-day exploit. The stolen information includes customer names, email addresses, phone numbers, and physical addresses. Framework is currently investigating if their Business customers were also affected.
Company spokesperson Eric Schumacher confirmed that "all customers" were impacted, though they did not provide a specific number. The company's niche computers, despite their limited market, are estimated to have sold hundreds of thousands of units.
Metabase disclosed its own breach on its official website, revealing that hackers leveraged an unknown security flaw, a zero-day exploit, to gain access to customers' databases stored on Metabase's cloud servers. Framework relayed the email from Metabase, which confirmed the hackers accessed their cloud instance. The computer manufacturer has concluded the investigation and determined that the stolen data does not include payment information.
Written by urgent.news from Slashdot's reporting — not their text. Machine-written — it may contain errors, so check the original before relying on it.