SECURITY Signal 412
Computer maker Framework notifies ‘all customers’ of a data breach
Framework disclosed that a zero-day exploit at its business intelligence vendor Metabase exposed the personal contact details of all Framework customers.
This is a supply-chain breach: Framework's own systems were not directly compromised, but a vulnerability in a third-party cloud service (Metabase) gave attackers access to Framework's customer database. For engineering teams, it underscores that BI and analytics tools holding production data are part of your attack surface even when you don't operate them.
Written by elseif from the cluster below · every claim links back to a sourceThe three things worth knowing
Hackers exploited an unknown zero-day in Metabase to access customer databases stored on Metabase's cloud servers, which included Framework's instance.
Exposed data includes names, email addresses, phone numbers, and physical addresses for all Framework customers, but not payment information.
Framework declined to specify the number of affected customers, though estimates suggest the company has sold hundreds of thousands of devices.
THE CLUSTER
↗