Gadgets

Framework Customer Data Compromised in Recent Breach

The company assures that payment information remains safe.

Framework, known for its focus on creating repairable and upgradable computers, has alerted its customers to a data breach that compromised their information. In an email sent out on August 6, the company disclosed that details such as customer names, login IPs, addresses, phone numbers, and email addresses were accessed during a hack involving their database provider, Metabase. However, payment details were confirmed to be safe.

In the communication, Framework shared Metabase’s account of the incident, which noted that the breach was identified on August 3. It was revealed that unauthorized access occurred through an “unknown (0-day) vulnerability.” Metabase has since patched this vulnerability. The provider highlighted that their assessment of the situation is still preliminary, stating, “We are collaborating with a third-party forensic investigation team to fully understand the extent of the breach,” as shared with Framework.

In response to the breach, Framework took immediate action by changing its credentials and confirmed that there were no changes to administrative privileges or any access beyond Metabase’s system. The company is also reviewing its strategies for data storage with external vendors to enhance security.

This breach comes at a challenging time for Framework. Despite launching an exciting new product lineup, the company has been notably affected by ongoing memory shortages. They increased prices twice earlier this year, first in January and again in March. Additionally, after taking preorders for the new Framework Laptop Pro, the company had to reduce RAM in some orders due to rising component costs, offering full refunds to customers who opted out.

Related Articles

Leave a Reply

Your email address will not be published. Required fields are marked *

Back to top button