Skip to content
Tech News
← Back to articles

McGraw-Hill confirms data breach following extortion threat

read original get Cybersecurity Data Breach Kit → more articles
Why This Matters

The McGraw-Hill data breach highlights the ongoing risks associated with misconfigurations in cloud platforms like Salesforce, which can expose limited but potentially sensitive data. Despite the company's reassurance that no critical information was compromised, the threat from extortion groups underscores the importance of robust cybersecurity measures for organizations handling educational and personal data. This incident serves as a reminder for both industry players and consumers to prioritize data security and vigilant monitoring of cloud environments.

Key Takeaways

Education company McGraw-Hill has confirmed in a statement to BleepingComputer that hackers exploited a Salesforce misconfiguration and accessed its internal data.

The company assured that the breach did not affect its Salesforce accounts, customer databases, or internal systems, and that the amount of exposed data is limited and non-sensitive.

“McGraw-Hill recently identified unauthorized access to a limited set of data from a webpage hosted by Salesforce on its platform. This activity appears to be part of a broader issue involving a misconfiguration within Salesforce’s environment that has impacted multiple organizations that work with Salesforce," a McGraw-Hill spokesperson told BleepingComputer.

"Importantly, this did not involve unauthorized access to McGraw-Hill’s Salesforce accounts, customer databases, courseware, or internal systems,” the company representative added.

McGraw-Hill further states that its investigation, with help from external cybersecurity experts, revealed that the exposed information does not contain Social Security numbers (SSNs), financial account information, or student data from its educational platforms.

A global education company focused on learning content and platforms, McGraw-Hill offers textbooks, digital learning platforms, and K-12 school and university systems. The company is a major player in education publishing, with an annual revenue of $2.2 billion.

The statement about the cyberattack comes in response to the extortion group ShinyHunters announcing McGraw-Hill as a victim on its dark-web portal and threatening to leak stolen data by April 14 unless a ransom is paid.

The notorious threat actor claims to hold 45 million Salesforce records containing personally identifiable information (PII), contradicting the company’s statement that the compromised data is not sensitive in nature.

McGraw-Hill on ShinyHunters' extortion portal

Source: BleepingComputer

... continue reading