Germany / fractal.id / Identity Verification Platform / Users+KYC / 6339 / 2024
Blockchain identity platform Fractal ID has published a postmortem outlining the data breach that the company suffered on July 14. The breach has since been traced back to a 2022 incident where an employee reused a compromised password.
According to Fractal ID, the compromised account belonged to an operator with the platform for three years and had admin rights. This allowed the attacker to bypass internal data privacy systems, though system monitoring helped lock out the attacker within 29 minutes.
Root cause of the breach
The operator’s failure to follow operational security policies and training, along with the reuse of credentials from past hacks, facilitated the breach.
On July 14, 2024, the crypto identity verification provider detected unusual activity in one of its back offices. This activity was quickly identified as a malicious attack, leading to data exfiltration for approximately 0.5% of its user base
News article: https://cointelegraph.com/news/fractal-id-data-breach-2022-password-reuse
Sample (Users+KYC): https://anonfilesnew.com/s/_8lsTcEDIyA