Fintech giant Finastra confirms it’s investigating a data breach

Date:

Share post:


Finastra, a London-based financial software company that serves most of the world’s top banks, has confirmed it’s investigating a data breach after a hacker claimed a compromise of the company’s internal file-transfer platform. 

In a statement given to TechCrunch, Finastra spokesperson Sofia Romano confirmed the fintech giant detected what it calls “suspicious activity” related to an “internally hosted Secure File Transfer Platform (SFTP)” on November 7. 

News of the breach, first reported by cybersecurity journalist Brian Krebs, comes after someone claimed on a known cybercrime forum to be selling stolen files allegedly belonging to Finastra’s largest banking clients. In a since-deleted forum posting, the hacker said they were in possession of 400 gigabytes of data from Finastra, including client files and internal documents. 

In an incident disclosure shared with customers, obtained by Krebs, Finastra confirmed data was exfiltrated from its systems. Finastra’s spokesperson, who declined to share a copy of the disclosure with TechCrunch, said the company first communicated the incident to customers on November 8 and has been “keeping them informed about what we do and do not yet know about the data that was posted.” 

Finastra declined to name the compromised file-transfer platform, but the data seller claims the stolen data from Finastra’s network was sourced from IBM Aspera, a file-transfer software that allows organizations to move large files and data sets over the internet.

When asked by TechCrunch, Finastra would not say how many customers are affected or what types of data were accessed in the breach.

“We are analyzing affected data to determine what specific customers were affected, while simultaneously assessing and communicating which of our products are not dependent on the specific version of the SFTP platform that was compromised,” Finastra’s spokesperson Romano said in an emailed statement. “The impacted SFTP platform is not used by all customers… so we are working as quickly as possible to rule out affected customers.”

Finastra added that the company continues to investigate the root cause of the data breach, but said that “initial evidence points to credentials that were compromised.” This suggests the organization was compromised through the theft of someone’s username and password. It’s not yet known if the system was protected with multi-factor authentication, which can prevent some credential theft attacks.



Source link

Lisa Holden
Lisa Holden
Lisa Holden is a news writer for LinkDaddy News. She writes health, sport, tech, and more. Some of her favorite topics include the latest trends in fitness and wellness, the best ways to use technology to improve your life, and the latest developments in medical research.

Recent posts

Related articles

Converge Bio’s ‘everything store’ for biotech LLMs brings in $5.5M seed

AI is finding its way into every corner of biotech and pharmaceutical research, but like other industries,...

Portugal’s Tekever raises $74M for dual-use drone platform deployed to Ukraine

Dual-use drone startup Tekever has raised €70 million ($74 million) to develop its product and expand into...

UK crashes out of global top 50 supercomputer ranking

The U.K. no longer has a supercomputer in the top 50, according to new data from the...

UK open to social media ban for kids as gov’t kicks off feasibility study

The U.K. government is not ruling out further beefing up existing online safety rules by adding an...

You have a few hours left to bid on this burned-out husk in San Francisco

Houses in San Francisco are notoriously expensive, with the average home price hovering around $1.26 million. It’s...

Ben Ling’s Bling Capital has already nabbed another $270M for fourth fund

Bling Capital, one of the more prolific and well-connected seed VC firms, has nabbed another $270 million...

SpaceX launches Starship for the sixth time – with Trump on site to watch

SpaceX conducted the sixth flight test of its massive Starship rocket on Tuesday afternoon, and although the...

Apple says Mac users targeted in zero-day cyberattacks

Apple released security updates on Tuesday that it says are “recommended for all users,” after fixing a...