Supply chain β›“ Supply Chain

T-Mobile Third-Party Breach (June 2024)

πŸ“… 2024-06-01 🏒 Third-party vendor
Primary Source β†—

Incident Details

T-Mobile denies it was hacked, links leaked data to vendor breach. T-Mobile has denied it was breached or that source code was stolen after a threat actor claimed to be selling stolen data from the telecommunications company. “T-Mobile systems have not been compromised. We are actively investigating a claim of an issue at a third-party service provider,” T-Mobile shared in a statement to BleepingComputer. “We have no indication that T-Mobile customer data or source code was included and can confirm that the bad actor’s claim that T-Mobile’s infrastructure was accessed is false.”.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Third-party vendor
Supply Chain Attack
βœ… Confirmed third-party / vendor compromise

Timeline

  1. 2024-06-01 Breach occurred
  2. 2024-06-19 Publicly disclosed