LexisNexis says hackers accessed legacy data in contained breach
好的,我现在需要帮用户总结一篇文章的内容,控制在100字以内。首先,我得仔细阅读文章,理解主要内容。 文章主要讲的是LexisNexis公司发生了一次安全事件,数据泄露了。黑客在一个网络犯罪论坛上声称窃取了2GB的数据,包括政府机构和律师事务所的账户记录、密码等。LexisNexis的发言人确认了数据泄露的真实性,并提到泄露的数据主要是过时的、2020年前的信息,没有涉及社保号或财务数据。公司已经聘请了网络安全专家调查,并通知了受影响的客户。此外,去年他们的另一个部门也发生了大规模的数据泄露。 接下来,我需要提取关键信息:LexisNexis的数据泄露事件、泄露的数据类型、公司回应措施、以及历史上的类似事件。然后把这些信息浓缩到100字以内,确保涵盖所有重要点。 可能的结构是:先说明事件的基本情况,然后提到泄露的数据内容和公司的应对措施,最后提到历史上的类似事件作为补充。 现在开始组织语言:LexisNexis确认数据泄露事件属实,涉及政府机构和律所账户记录、密码等过时数据。公司已聘请专家调查并通知客户,未发现对产品服务的影响。去年另一部门也曾发生大规模数据泄露。 检查字数是否在限制内,并确保信息准确无误。 </think> LexisNexis确认数据泄露事件属实,涉及政府机构和律所账户记录、密码等过时数据。公司已聘请专家调查并通知客户,未发现对产品服务的影响。去年另一部门也曾发生大规模数据泄露。 2026-3-3 18:45:44 Author: therecord.media(查看原文) 阅读量:26 收藏

Data analytics giant LexisNexis confirmed that information leaked on a cybercriminal forum on Tuesday is legitimate and related to a recent security incident. 

The breach emerged this week when a threat actor claimed they stole 2 GB worth of information from the company that included millions of records, contact information that included .gov email addresses, account records for government agencies and law firms, passwords, IT incident tickets and more. 

A spokesperson for LexisNexis’ Legal & Professional division confirmed that a threat actor gained access to a “limited number of servers” that contained “mostly legacy, deprecated data from prior to 2020, including information such as customer names, user IDs, business contact information, products used, customer surveys with respondent IP addresses, and support tickets.”

“LexisNexis Legal & Professional has investigated a security matter and based on the investigation and testing we have done to date, we believe the matter is contained. We have no evidence of compromise of or impact to our products and services,” the spokesperson said. 

“We engaged a preeminent cybersecurity forensic firm to assist in our investigation and response and have reported this issue to law enforcement.”

They have informed impacted current and previous customers of the breach, the spokesperson added.

The company did not respond to further questions about whether a ransom was offered or when the intrusion was initially discovered. 

The spokesperson said the breached data did not include Social Security numbers, financial data or information on what customers searched.

The hackers claimed in the cybercriminal forum post that the breach was conducted last week. The incident was first reported by BleepingComputer.

LexisNexis is best known for its data and technology services, analytics and predictive insights and has offices across Asia and Europe. The Legal & Professional branch is a large service provider for law firms and governments around the world, with nearly 12,000 employees and customers in 150 countries. 

The company’s risk management services branch LexisNexis Risk Solutions suffered a massive data breach last year that involved the information of more than 360,000 people. That incident involved contact information, Social Security numbers, driver's license numbers and dates of birth. 

Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.


文章来源: https://therecord.media/lexisnexis-says-hackers-accessed-legacy-data
如有侵权请联系:admin#unsafe.sh