Data Breach

Barracuda Networks Data Breach

0 records exposed • May 2023

Chinese hackers found a bug in Barracuda email security appliances. The attack was so bad that the company told customers to throw away their devices and get new ones.

What Happened

Chinese state-sponsored hackers exploited a zero-day in Barracuda Email Security Gateways. The vulnerability was so severe that Barracuda told customers to replace their appliances entirely.

Attack method: Zero-day vulnerability (CVE-2023-2868)

What Data Was Exposed

Email gateway data, Email contents, Attachments

Is your business exposed?

What to Do If You're Affected

  1. 1.

    Replace affected Barracuda ESG appliances

  2. 2.

    Review email logs for compromise indicators

  3. 3.

    Rotate all email-related credentials

Lessons for Businesses

  • Zero-days can render devices permanently compromised
  • Sometimes replacement is the only option
  • Email gateways see all your email

Sources

Related Breaches

Solarwinds 2020

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required