Article Details
Scrape Timestamp (UTC): 2023-11-08 18:36:12.651
Original Article Text
Click to Toggle View
Sumo Logic discloses security breach, advises API key resets. Security and data analytics company Sumo Logic disclosed a security breach after discovering that its AWS (Amazon Web Services) account was compromised last week. The company detected evidence of the breach on Friday, November 3, after discovering that an attacker used stolen credentials to gain access to a Sumo Logic AWS account. Sumo Logic says its systems and networks weren't impacted during the breach and that "customer data has been and remains encrypted." "Immediately upon detection we locked down the exposed infrastructure and rotated every potentially exposed credential for our infrastructure out of an abundance of caution," the company said. "We are continuing to thoroughly investigate the origin and extent of this incident. We have identified the potentially exposed credentials and have added extra security measures to further protect our systems." These measures involve enhanced monitoring and addressing potential vulnerabilities to prevent similar incidents in the future. The company also continues to monitor network and system logs to identify any indications of additional malicious activity. Customers advised to rotate API keys In light of these developments, Sumo Logic advised customers to rotate credentials used to access its services or any credentials shared with Sumo Logic for accessing other systems. Sumo Logic customers should immediately rotate their API access keys and should also reset the following as a precautionary measure: "While the investigation into this incident is ongoing, we remain committed to doing everything we can to promote a safe and secure digital experience," the company said. "We will directly notify customers if evidence of malicious access to their Sumo Logic accounts is found. Customers may find updates at our Security Response Center." Sumo Logic operates a cloud-native SaaS analytics platform providing customers with log analytics, infrastructure monitoring, cloud infrastructure security services, and more. In May, private equity firm Francisco Partners acquired the company for $1.7 billion. Its customer list includes many tech companies like Samsung, Okta, SAP, F5, Airbnb, SEGA, 23andme, Toyota, and others.
Daily Brief Summary
Security and data analytics firm, Sumo Logic, experienced a security breach after its Amazon Web Services (AWS) account was compromised through stolen credentials.
The company claims its systems and networks were not affected and customer data remained encrypted throughout the incident.
Post the breach, the company locked down the accessible infrastructure and swapped potentially exposed credentials to avoid further breach.
Sumo Logic has intensified monitoring and addressed potential vulnerabilities to forestall similar incidents in the future.
The company has urged its customers to rotate the credentials used to access its services as a preventive measure.
Sumo Logic will notify customers directly if evidence of malicious access to their accounts is found.
The firm’s clientele includes major tech corporations like Samsung, Okta, SAP, Airbnb, and Toyota among others.