Rackspace, an American cloud-computing company in Texas, confirmed that the recent ransomware attack accessed their customers’ storage table.
In December, Rackspace Technology announced that hackers had attacked their customers’ Hosted Exchange email environment. On January 6th 2023, they confirmed that this attack had led the threat actors to penetrate 27 customer data.
“Of the nearly 30,000 customers on the Hosted Exchange email environment at the time of the attack, the forensic investigation determined the threat actor accessed a Personal Storage Table of 27 Hosted Exchange customers,” Rackspace stated.
As of now, the said 27 have been informed about the incident. The company also said that no traces are speaking that the hackers have viewed, misused, obtained, or spread emails and other relevant information in the PSTs.
The forensic investigation indicated that the threat actor known as PLAY used a previously unknown security hole to obtain initial access to the Rackspace Hosted Exchange email system.
“This zero-day exploit is associated with CVE-2022-41080. Microsoft disclosed CVE-2022-41080 as a privilege escalation vulnerability and did not include notes for being part of a Remote Code Execution chain that was exploitable,” Rackspace emphasised.
They also ensure customers that an on-demand solution will be implemented within the next two weeks.
“We will continue working to recover all data possible as planned, however, in parallel, we are developing an on-demand solution for those customers who do still wish to download their data,” Rackspace stated.
According to Rackspace, the Hosted Exchange service will no longer be accessible. Even before the ransomware security breach, the Hosted Exchange email environment was planned for migration to Microsoft 365. Per Rackspace, there won’t be a price increase for Hosted Exchange users who decide to transition to Microsoft 365 and choose a plan with the same capabilities that they presently have.
“Every Hosted Exchange customer has the option to migrate and pay exactly what they are paying today or even slightly lower costs and have the same capabilities,” Rackspace said.
More Stories
Killnet and AnonymousSudan Collaborate to Launch Cyber Attacks on Western Organisations
In recent news, it has been reported that two Russia-sympathetic hacktivist groups, Killnet and AnonymousSudan, have allegedly launched a series...
$4000 Gone In An Instant: Mother Defrauded in Facebook Marketplace Car Deal
A mother of four is warning others to be cautious after believing she had purchased a safe and dependable car...
Shocking Scam: Sydney Family Loses $200K Life-Savings in Suncorp Spoofing Fraud
A family from Sydney has lost their life savings worth $200,000 due to a fraudulent scam. Peter and Madison, who...
Mysterious Money Transfer Leaves Couple Speechless: How They Got an Unsolicited $4000
A young couple in Melbourne claims their bank is making up a personal loan they do not understand. Ashley and...
Phishing + AI + Voice Cloning= Big Trouble: The New Way Criminals are Stealing Your Money
New Alert: Criminals use AI and voice cloning to trick you out of your money. Earlier this year, Microsoft unveiled...
‘Impossible to Spot’ Delivery Scam Email Targets Australia Post Customers – Don’t Fall Victim!
Unsuspecting shoppers should be cautious as a parcel delivery scam that is hard to distinguish targets Australia Post customers. Email...