Supply chain β›“ Supply Chain

Schneider Electric Third-Party Breach (November 2024)

πŸ“… 2024-11-01 🏒 Atlassian's JIRA server
Primary Source β†—

Incident Details

Schneider Electric confirms dev platform breach after hacker steals data. Schneider Electric has confirmed a developer platform was breached after a threat actor claimed to steal 40GB of data from the company’s JIRA server. “Schneider Electric is investigating a cybersecurity incident involving unauthorized access to one of our internal project execution tracking platforms which is hosted within an isolated environment,” Schneider Electric told BleepingComputer. “Our Global Incident Response team has been immediately mobilized to respond to the incident. Schneider Electric’s products and services remain unaffected.”. Third-party company: Atlassian’s JIRA server.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Atlassian's JIRA server
Supply Chain Attack
βœ… Confirmed third-party / vendor compromise

Timeline

  1. 2024-11-01 Breach occurred
  2. 2024-11-04 Publicly disclosed