Security News > 2023 > September > Rollbar discloses data breach after hackers stole access tokens

Software bug-tracking company Rollbar disclosed a data breach after unknown attackers hacked its systems in early August and gained access to customer access tokens.
The security breach was discovered by Rollbar on September 6 when reviewing data warehouse logs showing that a service account was used to log into the cloud-based bug monitoring platform.
"When we became aware of this access we disabled the service account and began analyzing what actions had been taken by the unauthorized party," Rollbar said in a data breach notification letter shared by Have I Been Pwned creator Troy Hunt.
Customers' project access tokens that enable them to interact with Rollbar projects were also retrieved during the incident.
The company says access tokens allowing access to Rollbar project data have been expired, while those allowing to send data to an active project will expire in 30 days.
Paramount discloses data breach following security incident.
News URL
Related news
- Wolf Haldenstein law firm says 3.5 million impacted by data breach (source)
- Otelier data breach exposes info, hotel reservations of millions (source)
- HPE investigates breach as hacker claims to steal source code (source)
- CISA: Hackers still exploiting older Ivanti bugs to breach networks (source)
- PayPal to pay $2 million settlement over 2022 data breach (source)
- UnitedHealth now says 190 million impacted by 2024 data breach (source)
- PowerSchool starts notifying victims of massive data breach (source)
- Hackers exploiting flaws in SimpleHelp RMM to breach networks (source)
- US healthcare provider data breach impacts 1 million patients (source)
- US healthcare provider data breach impacts 1 million patients (source)