logo

Rackspace Breach Linked to Zero-Day Vulnerability in ScienceLogic SL1’s Third-Party Utility

ID: 78807de8-e3a4-5bc9-94bb-8894c57df015

STIX ID: report--78807de8-e3a4-5bc9-94bb-8894c57df015

Feed Name: Arctic Wolf Blog

Threat Score
65/100

Date Published: 2024-10-04

Date Updated: 2026-04-27

...
...

On September 24, 2024 Rackspace reported that an undocumented zero-day remote code execution vulnerability in a third‑party utility bundled with ScienceLogic SL1 was exploited, resulting in unauthorized access to Rackspace Monitoring performance data. ScienceLogic worked with Rackspace to develop and distribute a patch; affected customers were notified and the exposed data was described as low-sensitivity (account names/numbers, usernames, Rackspace device IDs, device IPs, and AES‑256 encrypted internal device agent credentials). Arctic Wolf and others are monitoring for wider vendor impact and CVE assignment.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.