ownCloud Warns Users to Enable MFA After Credential Theft Incident
ID: 1a7eac62-8b9b-5fa2-aba9-8b1824ff7e0c
STIX ID: report--1a7eac62-8b9b-5fa2-aba9-8b1824ff7e0c
Feed Name: GBHackers
ownCloud warned users after Hudson Rock reported credential-theft incidents in January 2026 where infostealer malware (RedLine, Lumma, Vidar) stole credentials from infected employee devices and allowed unauthorized access to ownCloud accounts that did not have Multi-Factor Authentication enabled; ownCloud stressed this was not a platform zero-day and urged immediate MFA activation, password resets, session invalidation, and access-log reviews while recommending enterprises consider managed solutions with enforced MFA.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
