2025-01-14
Telefónica Discloses Breach
Spanish multinational telecommunications firm Telefónica has disclosed a breach of their internal ticketing system. The disclosure was made following the appearance of information from Telefónica’s Jira database on a hacking forum. The system was reportedly breached using stolen employee credentials; Telefónica has reset passwords on affected accounts.
Editor's Note
In today's threat environment, implementing Multi-Factor Authentication (MFA) is now table stakes for all systems, but in particular sensitive systems, whether they are internal or external-facing. MFA should now be viewed in the same regard as seatbelts in a car, and those that don't use MFA viewed in the same way as those who don't wear seat belts

Brian Honan
Strong authentication, multi-factor and resistant to fraudulent reuse, is both essential and efficient. Well-chosen and implemented, it is more convenient than so-called strong passwords, whose convenience goes down as their strength goes up.

William Hugh Murray
The breach resulted in exfiltration about 2.3GB of documents, tickets and data. Make sure you're tied into credential breach notification for proactive password changing, or better still, move away from reusable passwords. As this internal Jira system was breached with compromised credentials, I would ask what other controls should have been in place to prevent external access to an internal system.

Lee Neely
Credential harvesting has been on the rise over the last couple years. It is perhaps the easiest means for an evildoer to access an organization and compromise. Multi-factor authentication (MFA) has proven to be effective in mitigating loss of passwords. It’s a best practice as part of Implementation Group 1 of the CIS Critical Security Controls.

Curtis Dukes
Read more in
Dark Reading: Telefonica Breach Exposes Jira Tickets, Customer Data
Bleeping Computer: Telefónica confirms internal ticketing system breach after data leak
Techradar: Telefónica says it was hit by systems breach, internal data leaked online
Infosecurity Magazine: Telefonica Breach Hits 20,000 Employees and Exposes Jira Details
Security Week: Infostealer Infections Lead to Telefonica Ticketing System Breach