HackingStolen CredentialsCustomer Data InvolvedCREDENTIALSIDENTITY_BASICLowResolved
SLACK TECHNOLOGIES, INC.
bd_240626f50aa2b0a7 · schema v1 · pii pii-v1
Full breach record for SLACK TECHNOLOGIES, INC. →Slack Technologies, Inc. notified users that their sign-in credentials (email addresses and passwords) were in the possession of an unauthorized individual. The incident was linked to the 2015 security incident, potentially resulting from malware or credential reuse from third-party breaches. Slack reset passwords for impacted accounts and recommended enabling two-factor authentication.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-148983
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 17, 2019
- Raw hash
- 95b88165443169c66648d65afe9df2f4d6a9c07f78ad9f6a73bb75d11fb0b892
Reporting entity
- Name
- SLACK TECHNOLOGIES, INC.norm: slack technologies
- Domain
- slack.com
Victim entity
- Name
- SLACK TECHNOLOGIES, INC.norm: slack technologies
- Domain
- slack.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- CREDENTIALSIDENTITY_BASIC
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.