SoatDev IT Consulting
SoatDev IT Consulting
  • About us
  • Expertise
  • Services
  • How it works
  • Contact Us
  • News
  • October 12, 2023
  • Rss Fetcher

Shadow, which offers services that let you stream a Windows PC, has disclosed a security breach that led an attacker taking some private customer data. The company is sending emails to customers notifying them that a bad actor was able to extract their first and last name, email address, date of birth, billing address, and credit card expiration date.

Shadow’s CEO confirmed the breach in a statement to The Verge. “We were recently the victim of a highly sophisticated social engineering attack which led to the exfiltration of the database of one of our service providers, resulting in the unauthorized exposure of certain customer data,” Eric Sele says. “We have since then taken immediate steps to secure our systems, including reinforcing the security protocols we apply with all our service providers. Most importantly, no passwords or financial data have been compromised.”

Here’s what happened, according to the email sent to customers (which you can see on Reddit):

At the end of September, we were the victim of a social engineering attack targeting one of our employees. This highly sophisticated attack began on the Discord platform with the downloading of malware under cover of a game on the Steam platform, proposed by an acquaintance of our employee, himself a victim of the same attack.

Our security team took immediate action. Despite our actions, the attacker was able to exploit one of the stolen cookies to connect to the management interface of one of our SaaS providers. Thanks to this cookie, now deactivated, the attacker was able to extract, via our SaaS provider’s API, certain private information about you.

The company says it has “reinforced the security protocols we apply with all our SaaS providers” and that it will be “upgrading our internal systems to render compromised workstations harmless.”

A since-removed Reddit post from a user that identifies as a community manager also included instructions to delete your Shadow account and advises users to “take proactive steps to enhance your online privacy and identity protection.” You can see that post on the Wayback Machine.

Previous Post
Next Post

Recent Posts

  • Conheça o jogo Chicken Road em Portugal chickenroadcasino.pt
  • Descoperă jocul Plinko în România plinko-romania.ro
  • Remark raises $16M to build out human-powered expert models for e-commerce
  • Threads launches its own DM inbox, as app moves further away from Instagram
  • Chicken Road – Ein unterhaltsames Spiel aus der Schweiz chickenroadgame.ch

Categories

  • Industry News
  • Programming
  • RSS Fetched Articles
  • Uncategorized

Archives

  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023

Tap into the power of Microservices, MVC Architecture, Cloud, Containers, UML, and Scrum methodologies to bolster your project planning, execution, and application development processes.

Solutions

  • IT Consultation
  • Agile Transformation
  • Software Development
  • DevOps & CI/CD

Regions Covered

  • Montreal
  • New York
  • Paris
  • Mauritius
  • Abidjan
  • Dakar

Subscribe to Newsletter

Join our monthly newsletter subscribers to get the latest news and insights.

© Copyright 2023. All Rights Reserved by Soatdev IT Consulting Inc.