Compute & Cloud
Anodot breach exposes data from at least a dozen companies
Hackers have reportedly stolen data from at least a dozen companies following a breach at Anodot, with the ShinyHunters group threatening to release the information.
Hackers have reportedly breached business monitoring software maker Anodot, compromising data from at least a dozen breached companies. According to reports from Bleeping Computer and BBC News, the ShinyHunters hacking group is threatening to release the stolen information if its ransom demands are not met. The incident has left Anodot’s corporate customers exposed to extortion and at risk of having their data published online.
According to the Anodot status page, the security incident began on April 4, when the company’s data connectors—which are software components that link data sources—stopped working, preventing its customers from accessing their cloud-stored data. Reports indicate that the hackers broke into Anodot and stole authentication tokens, which are security credentials used to access cloud data. Using those stolen tokens, the hackers accessed and stole customer data from cloud storage. Following the detection of unusual activity in some data stores, cloud storage provider Snowflake restricted access to some Anodot customers. Snowflake did not respond to a request for comment on Monday, and Glassbox, the owner of Anodot, also did not respond to a request for comment.
Among the affected corporate customers is video game maker Rockstar Games. This incident marks another security challenge for the company, as Rockstar Games was also breached in 2022. In response to the current incident, Rockstar spokesperson Murphy Siegel confirmed that some data had been accessed. “We can confirm that a limited amount of non-material company information was accessed in connection with a third-party data breach. This incident has no impact on our organization or our players,” Siegel said.
The ShinyHunters hacking group is known for targeting organizations that store large volumes of data in cloud environments, focusing on platforms that allow customers to access and analyze large datasets. The group has previously targeted other companies, including Gainsight and Salesloft, which utilize cloud storage systems. To execute these breaches, the group frequently relies on social engineering, which is a manipulation technique used by hackers to gain access to secure corporate networks.
Why it matters
This incident highlights the growing risk of supply chain attacks where hackers target software used by corporate giants to compromise multiple companies simultaneously.