Framework, a company known for its modular and repairable computers, has informed its customer base of a data breach resulting from a security incident at Metabase, a business intelligence service provider. The breach has led to the exposure of personal information, including names, email addresses, phone numbers, and physical addresses. Importantly, payment information remains unaffected.
Metabase disclosed that attackers exploited an unknown vulnerability, granting them access to customer databases stored on Metabase’s cloud servers. Framework’s investigation confirmed that its cloud instance was compromised, leading to the unauthorized access of customer data.
While Framework has not specified the exact number of affected customers, the company has taken steps to notify all individuals impacted by the breach. Customers are advised to remain vigilant for potential phishing attempts and to monitor their accounts for any suspicious activity.
This incident underscores the critical importance of robust security measures and the need for companies to ensure that their third-party service providers adhere to stringent security protocols. As cyber threats continue to evolve, organizations must proactively assess and fortify their security postures to protect sensitive customer information.