Framework’s Data Breach Revealed Customer Data: Here’s What to Know
The computer company has notified all customers of a data breach.
Framework, a company renowned for its modular, repairable, and customizable PCs, has recently suffered a major data breach. According to reports from multiple media outlets and a leaked email, the breach has exposed sensitive customer information, including names, email addresses, phone numbers, login IPs, and physical addresses.
The company has not disclosed the exact number of affected customers, but TechCrunch claims all customers were impacted. The source of the breach is a Metabase Cloud vulnerability, which exploited a zero-day flaw in the software. Framework spokesperson Eric Schumacher confirmed that all customers were affected, but did not provide a precise figure.
Metabase has since patched the vulnerability but advises users who self-host to upgrade to the latest point release to avoid potential risks. Data breaches are becoming increasingly common in today's digital landscape, with recent reports showing that companies are often reluctant to disclose the full extent of compromised information and the methods used by attackers.
To mitigate potential damage, those affected by the Framework data breach should change any reused passwords, enable two-factor authentication if not already done, monitor linked payment cards for any suspicious activity, and revoke access to services no longer needed. The memory shortage is causing Framework significant challenges, leading to price increases and a reduction in RAM loadout for their laptops.
This latest breach may further erode consumer confidence as the company grapples with pricing pressures and supply chain difficulties.
Written by urgent.news from CNET's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.