logo

Cloud marketplace Pax8 accidentally exposes data on 1,800 MSP partners

ID: b2675f30-4f10-5a29-a9b2-90780f7c60e0

STIX ID: report--b2675f30-4f10-5a29-a9b2-90780f7c60e0

Feed Name: Bleeping Computer

Threat Score
55/100

Date Published: 2026-01-14

Date Updated: 2026-04-20

Author: Ax Sharma

...
...

Pax8 mistakenly emailed a CSV on 13 January 2026 containing internal pricing and Microsoft licensing details for ~1,800 partners (56,000+ rows) to under 40 UK recipients; the company recalled the message and requested deletion. Although Pax8 states no personally identifiable information was exposed, recipients reported detailed partner/customer and licensing data was included, and threat actors have been soliciting copies of the dataset—raising risk of targeted phishing, business email compromise, extortion, or competitive intelligence abuse.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.