Skip to content

Delve Security Notice

2 pointskdazzle1 comment
On HN

Earlier this evening, we were informed by an independent security researcher about an issue involving a third-party storage service we utilize.

Based on our immediate investigation to date, it appears this service may have been accessible to third parties, including customer materials such as screenshots, documents, and other supporting data uploaded to the platform.

What we are doing about it

We immediately locked down all access and rotated credentials to the potentially affected storage service. Our security team is actively working to determine whether any unauthorized access took place and any potential impact to our customers.

We also engaged a leading cybersecurity forensics vendor, Mandiant, to investigate the matter and we are conducting a thorough investigation of this issue.

Comments

Related: "Delve – Fake Compliance as a Service" https://news.ycombinator.com/item?id=47444319

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.