[Nulled] » Programming » Hacking » GoTo has published an update on the incident
January 26 2023

GoTo has published an update on the incident

GoTo has published an update on the incident, warning customers that attackers who hacked its development environment in November 2022 stole encrypted backups containing information about the client and the encryption key for part of this data.

GoTo provides a cloud platform for remote work, collaboration and communications, as well as solutions for remote IT management and technical support.

In November 2022, the company reported a breach in its development environment and cloud storage service used, among other things, by its subsidiary LastPass.

At that time, it was not possible to assess the impact on the client cluster promptly.

However, after involving Mandiant in the investigation, it became clear that the incident also affected GoTo customers.

According to the GoTo incident notification, as a result of the attack, the actor got to backups of Central and Pro products stored in a third-party cloud storage, which include: user names for accounts, account passwords (hashed), deployment and multi-factor authentication information, One-to-Many scenarios, licensing and purchase data.

Due to the theft of encryption keys, GoTo had to reset the Central and Pro passwords for the affected customers, as well as transfer their accounts to an advanced identity management platform.

The company does not disclose the type of encryption used for backups, also assuring that it is impossible to carry out MITM attacks on customers due to the presence of TLS 1.2 encryption and the use of peer-to-peer communication technologies.

GoTo noted that it still has no evidence that attackers gained access to its production systems.

The investigation of the incident is still ongoing, and GoTo has promised to report all important findings.

Information

Visitors who are in the group Guests they can't download files.
Log in to the site under your login and password or if you are a new user go through the process registrations on the website.

Comments:

    1. Viking56 (☘Pʀᴇᴍɪᴜᴍ)

      01 April 2024 04:34 31 comments

      instructive

    1. Oliver (ᴜsᴇʀ)

      29 March 2024 06:57 23 commenti

      Thanks for the file

Information the publication:

  • Author of the publication: AdequateSchizo
  • Date of publication: 26 January 2023 12:15
  • Publication category(s): Programming / Hacking
  • Number of views of the publication: 98
  • Number of comments to the publication: 2

Related News

16 January 2023
Information security
The corporate

The corporate communication and collaboration platform Slack reported a cyber incident that occurred during the

Read more
16 January 2023
Information security
CircleCI forcibly

CircleCI forcibly changes GitHub OAuth tokens for its customers after a cyber incident.

Read more
16 January 2023
Information security
The largest medical

The largest medical facility in Lake Charles (LCMHS), Louisiana was attacked by ransomware, resulting in a leak of

Read more
16 January 2023
Information security
BTC.com robbed of $3

The seventh largest cryptocurrency mining pool has officially announced an incident in which attackers stole about

Read more
23 January 2023
Information security
Datadog, specializing in

Datadog, specializing in cloud security, reports that it has become a conditional victim of a recent incident with

Read more

Information

Users of visitor are not allowed to comment this publication.

Site Search

Site Menu


☑ Scripts Software

Calendar

«    May 2024    »
MonTueWedThuFriSatSun
 12345
6789101112
13141516171819
20212223242526
2728293031 

Advertisement

Survey on the website

Evaluate the work of the site
 

Statistics

  • +8 Total articles 5598
  • +20 Comments 3093
  • +35 Users : 4005