Data-management firm Veeam reportedly mismanages data, exposes customer info


A Swiss data management company may’ve dropped the ball when it came to managing its own data.

Switzerland-based Veeam, which specializes in data recovery, backup and management, reportedly left exposed a database containing more than 200 gigabytes of customer information.

The more than 440 million records mostly consisted of names, email addresses and IP addresses, according to a report by Techhnews and a blog post by security researcher Bob Diachenko.

Veeam uses such data to send automated marketing communications to its customers.

The database consisted of two collections of records gathered between 2013 and 2017, according to Techhnews, which said some records may be duplicates. After Techhnews alerted Veeam about the exposure, the database was pulled offline within three hours, the news outlet said.

The database wasn’t secured with a password, so it was accessible to anyone who was aware of it, Diachenko said.

Veeam confirmed that data may’ve been left visible but said the information was innocuous.

“It has been brought to our attention that one of our marketing databases, leaving a number of nonsensitive records (i.e. prospect email addresses), was possibly visible to third parties for a short period of time,” Veeam said in an emailed statement. “We have now ensured that all Veeam databases are secure. Veeam takes data privacy and security very seriously, and a full investigation is currently underway.”

Exposed-data incidents have hit Comcast, the University of Cambridge and Exactis in recent months.

First published at 10:31 a.m. PT.
Update, 11:33 a.m.: Adds statement from Veeam.

Source link

Leave a Reply

Subscribe to our newsletter

Join our monthly newsletter and never miss out on new stories and promotions.
Techhnews will use the information you provide on this form to be in touch with you and to provide updates and marketing.

You can change your mind at any time by clicking the unsubscribe link in the footer of any email you receive from us, or by contacting us at We will treat your information with respect.

%d bloggers like this: