United States
USA
In early December 2024, BeyondTrust detected compromise affecting 17 Remote Support SaaS customers. A zero-day vulnerability in a third-party application was used to access a BeyondTrust cloud asset and obtain an infrastructure API key; BeyondTrust revoked the key, suspended and quarantined affected customer instances, and provided alternative Remote Support SaaS instances, producing a direct but contained interruption of its service-delivery environment.
Estimated severity
69 / 100
Source reliability
94 / 100
Approximate Date
02/12/2024
Targeted Company
BEYONDTRUST
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
United States
USA
No other affected countries reported
Target country
United States
Affected countries
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
No information
Please rotate your phone