Rackspace Breach Linked to Zero-Day Vulnerability in ScienceLogic SL1’s Third-Party Utility
ID: 78807de8-e3a4-5bc9-94bb-8894c57df015
STIX ID: report--78807de8-e3a4-5bc9-94bb-8894c57df015
Feed Name: Arctic Wolf Blog
On September 24, 2024 Rackspace reported that an undocumented zero-day remote code execution vulnerability in a third‑party utility bundled with ScienceLogic SL1 was exploited, resulting in unauthorized access to Rackspace Monitoring performance data. ScienceLogic worked with Rackspace to develop and distribute a patch; affected customers were notified and the exposed data was described as low-sensitivity (account names/numbers, usernames, Rackspace device IDs, device IPs, and AES‑256 encrypted internal device agent credentials). Arctic Wolf and others are monitoring for wider vendor impact and CVE assignment.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
