MIT TRACE

MIT CTL Logo
Back to Main Dashboard

AnyDesk production-system breach causes multi-day service disruption

AnyDesk discovered a compromise of its production environment and subsequently revoked code-signing certificates, reset credentials and placed portions of its infrastructure into containment and maintenance. The response produced a multi-day disruption beginning on 29/01/2024, including periods in which users could not log in normally. Source code and code-signing material were accessed, but AnyDesk stated that ransomware was not involved and no evidence showed compromise of customer end-user devices.

72

Estimated severity

72 / 100

89

Source reliability

89 / 100

Approximate Date

29/01/2024

Targeted Company

ANYDESK

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

Germany

DEU

Other Affected Countries

No other affected countries reported

Target country

Germany

Affected countries

No information

Impacted regions

No information

Operational Impact

Duration

4 days

Financial impact (USD M)

No information

Impact types

Service unavailabilityService degradationOperational disruption

Affected sectors

Technology & IT Services

Affected departments

Information Technology

Attack Profile

Attack types

Unauthorized accessData exfiltration

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.