McGraw-Hill Faces Data Breach as Hackers Target Salesforce Misconfiguration
In a recent cybersecurity incident, education giant McGraw-Hill confirmed that hackers exploited a misconfiguration within Salesforce, gaining access to limited internal data. While the company reassured that none of its customer databases or sensitive information were compromised, the incident raises concerns about data security in cloud platforms.
The extortion group ShinyHunters claimed responsibility, threatening to leak 45 million records unless a ransom is paid. However, McGraw-Hill maintains that the exposed data is non-sensitive and does not include personal identifiers or financial information.
The breach primarily affects McGraw-Hill’s internal systems and has prompted the company to enhance its security measures in collaboration with Salesforce. McGraw-Hill has acted swiftly to secure the affected webpages.
Risk Level: Medium
To protect against such incidents, organizations should regularly review and configure their cloud services, conduct security audits, and stay informed about potential vulnerabilities.
Source: View Original Report
