Computer hardware manufacturer Cooler Master has confirmed that it suffered a data breach on May 19, allowing a threat actor to steal customer data.
Cooler Master is a popular computer hardware manufacturer known for their cooling devices, computer cases, power supplies, and other peripherals.
BleepingComputer reported yesterday that a threat actor known as 'Ghostr' told us they hacked the company's Fanzone website on May 18 and downloaded its linked databases.
Cooler Master's Fanzone site is used to register a product's warranty, request an RMA, or open support tickets, requiring customers to fill in personal data, such as names, email addresses, addresses, phone numbers, birth dates, and physical addresses.
Ghostr said they were able to download 103 GB of data during the Fanzone breach, including the customer information of over 500,000 customers.
The threat actor also shared data samples, allowing BleepingComputer to confirm with numerous customers listed in the breach that their data was accurate and that they recently requested support or an RMA from Cooler Master.
Other data in the samples included product information, employee information, and information regarding emails with vendors.
The threat actor claimed to have partial credit card information, but BleepingComputer could not find this data in the data samples.
After contacting Cooler Master on Tuesday, the company has confirmed to BleepingComputer that they suffered a data breach and are in the process of notifying customers.
The threat actor now says they will sell the leaked data on hacking forums but has not disclosed the price.
While only a limited amount of data has been shared by the threat actor, if there is indeed information about 500,000 Cooler Master customers, then there is a good chance it will be sold to another threat actor.
All Cooler Master customers who have registered an account on the company's Fanzone site should be on the lookout for targeted phishing emails and other social engineer attacks designed to steal further personal information.
Cooler Master hit by data breach exposing customer information.
Dell warns of data breach, 49 million customers allegedly affected.
DocGo discloses cyberattack after hackers steal patient health data.
United Nations agency investigates ransomware attack, data theft.
AT&T now says data breach impacted 51 million customers.
This Cyber News was published on www.bleepingcomputer.com. Publication date: Thu, 30 May 2024 15:05:10 +0000