Cyber Security News

URGENT: AnyDesk Servers Hacked, Customers Urged to Reset Passwords

It has been confirmed that AnyDesk, a renowned remote access software company headquartered in Germany, which boasts a staggering 170,000 customers worldwide, including big names such as Comcast and Thales, has fallen prey to a security breach that has compromised its production systems.

“We have revoked all security-related certificates, and systems have been remediated or replaced where company’s,” the company said.

According to recent media reports, AnyDesk has been targeted by attackers believed to have stolen source code and code signing certificates.

However, AnyDesk has not yet officially confirmed these reports. Nonetheless, the company has confirmed that the incident was not a ransomware attack, which is reassuring for its customers and users.

Document
Protect Your Network From Data Breach

Perimeter’s 81 Malware Protection for Network Based Threats

Prevent malware from infecting your network at the delivery stage by intercepting malicious files in transit from their source to the target device’s web browser. .

According to AnyDesk, their investigation has revealed that there is no evidence to suggest that the cyberattack led to the theft of any private keys, tokens, or passwords that could be used to gain access to end-user devices. Moreover, the company has confirmed that, at present, there are no indications that the breach has had any impact on any end-user devices.

“Our systems are designed not to store private keys, security tokens, or passwords that could be exploited to connect to end-user devices.”

In response to the incident, AnyDesk took swift action by revoking all security-related certificates and systems. The company also made sure to replace or remediate any affected systems. Additionally, AnyDesk has plans to rescind the previous code signing certificate for binaries and issue a new one to ensure the utmost security for its users.

To protect against potential threats, the company has proactively revoked all passwords for its web portal located at my.anydesk.com. Additionally, the necessary authorities have been alerted to the breach and are taking appropriate actions to promptly address the situation.

“We can confirm that the situation is under control and it is safe to use AnyDesk. Please ensure you use the latest version with the new code signing certificate”, reads the report.

Download Free CISO’s Guide to protect your network from massive data breaches.

Guru Baran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Notorious Hacker IntelBroker Claims that Europol has Suffered a Data Breach

The European Union's law enforcement agency, Europol, has confirmed a security breach of its web…

2 hours ago

Cyber Security News Weekly Round-Up (Vulnerabilities, Cyber Attacks, Threats & New Stories)

Staying informed is the key in this dynamic battle of cybersecurity, and due to this,…

16 hours ago

Critical Next.js Vulnerability Let Attackers Compromise Server Operations

Two new vulnerabilities have been discovered in Next.js, related to response queue poisoning and SSRF…

2 days ago

British Columbia Cyber Attack: Investigation In Progress

British Columbia's government has confirmed a sophisticated attempt to infiltrate its information systems. Premier David…

3 days ago

New ‘TunnelVision’ Technique Allows Hackers to Bypass VPN Encryption

Security researchers have uncovered a new technique called "TunnelVision" that exposes a fundamental flaw in…

3 days ago

New Malware Attacking Windows & MS Office Users

A sophisticated malware campaign has been identified, specifically targeting Windows and Microsoft Office users through…

3 days ago