The infrastructure of MongoDB, which develops the namesake document-oriented DBMS and the cloud service MongoDB Atlas, has shown signs of hacking. According to a notification sent to clients, attackers were able to gain access to some corporate systems containing, among other things, information about customer accounts and user contact details. There is currently no evidence suggesting that the attackers accessed data stored by users in the MongoDB Atlas cloud service.
Malicious activity was detected on the evening of December 13, after which unauthorized access was halted, and the incident response process was initiated. The timeframe during which the attackers had access to the infrastructure has not been disclosed. It is also not mentioned how much the attack affected the systems related to the development of the MongoDB DBMS. It is possible that the data obtained during the attack could be used for phishing and targeted attacks employing social engineering methods. Users of MongoDB cloud services are advised to enable two-factor authentication.
It is noted that the failure that occurred a few hours ago, which prevented users of the Atlas cloud storage and the technical support portal from connecting, is not related to the incident under investigation.
Source: opennet.ru
