Audio By Carbonatix
Cloud computing giant Rackspace has confirmed hackers accessed customer data during last month’s ransomware attack.
The attack, which Rackspace first confirmed on December 6, impacted the company’s hosted Exchange email environment, forcing the web giant to shut down the hosted email service following the incident. At the time, Rackspace said it was unaware “what, if any, data was affected.”
In its latest incident response update published on Friday, Rackspace admitted that the hackers gained access to the personal data of 27 customers. Rackspace said the hackers accessed PST files, typically used to store backup and archived copies of emails, calendar events and contacts from Exchange accounts and email inboxes.
Rackspace said about 30,000 customers used its hosted Exchange service — which it will now discontinue — at the time of the ransomware attack.
“We have already communicated our findings to these customers proactively, and importantly, according to Crowdstrike, there is no evidence that the threat actor actually viewed, obtained, misused, or disseminated any of the 27 Hosted Exchange customers’ emails or data in the PSTs in any way,” said Rackspace. The company added that customers that haven’t been contacted directly can “be assured” that their data was not accessed by attackers.
Rackspace attributed the breach to the Play ransomware group, a relatively new gang that recently claimed attacks on the Belgian port city of Antwerp and the H-Hotels hospitality chain. Rackspace’s stolen data is not currently listed on the ransomware group’s leak site, and it’s unclear if Rackspace has paid a ransom demand.
According to the incident report update, Play threat actors gained access to Rackspace’s networks by exploiting CVE-2022-41080, a zero-day flaw patched by Microsoft in November that has been linked to previous ransomware incidents.
Latest Stories
-
Director General of NaCCA must be fired for sleeping on the job – Ntim Fordjour
8 minutes -
Foh-Amoaning urges inquiry into curriculum after NaCCA withdraws teacher manual over gender content
20 minutes -
Learning to Stay Healthy in the New Year – Focus on the Basics
22 minutes -
Ghana aims to attain WHO Level Five preparedness under new health security plan
24 minutes -
African nations slam U.S. military strikes in Venezuela as threat to global sovereignty
34 minutes -
President Mahama’s First Year: Cautious reform or dangerous complacency?
41 minutes -
Prof Bokpin calls on gov’t to apologise over NaCCA SHS teacher manual response
43 minutes -
UN Security Council weighs dangerous precedent set by US military operation in Venezuela
45 minutes -
Semenyo’s personality fits right with Man City team – Bernardo Silva
50 minutes -
One killed in road crash at Anyaa Market
55 minutes -
China announces record $1tn trade surplus despite Trump tariffs
58 minutes -
Global temperatures dipped in 2025 but more heat records on way, scientists warn
59 minutes -
Police arrest man over alleged sale of 3-year-old son for GH¢1m
1 hour -
Asiedu Nketia calls for investigation into cocoa sack procurement under ex-government
1 hour -
Ghanaians divided over DStv upgrades as government ramps up anti-piracy war
1 hour
