2 min read

Ancestry Data Breach: 23andMe Faces Cybersecurity Crisis - Veroot Cyber Security Solutions for Logistics, TSA, CTPAT, and Shippers

Ancestry Data Breach: 23andMe Faces Cybersecurity Crisis - Veroot Cyber Security Solutions for Logistics, TSA, CTPAT, and Shippers

In a significant blow to the privacy of more than four million individuals, 23andMe, a leading direct-to-consumer genetic testing service, has fallen victim to a cyber-attack. The incident involves the exposure of sensitive ancestry data and raises concerns about the security measures implemented by the company.

The Cyber Threat

The threat actor, known as Golem, previously leaked private user data from 23andMe and has now expanded the breach to millions of people. The leaked data includes over four million individuals, primarily from the United Kingdom, and another file with more than 100 thousand individuals from Germany. Golem claims to have targeted the wealthiest individuals in the United States and Western Europe.

The compromised data contains personal information such as names, gender, age, location, and crucial ancestry markers, including lineage, yDNA, and mtDNA haplogroups. However, the authenticity of the data remains unverified.

23andMe’s Response

Upon learning of the breach, 23andMe has responded, attributing the leak to a credential stuffing attack. This type of attack involves reusing credentials from other breaches. Despite the company’s investigation, there is no indication of a data security incident within their systems.

The threat actor, Golem, claims to have obtained data from seven million 23andMe users. The company’s spokesperson maintains that the breach occurred due to users recycling login credentials, where usernames and passwords on 23andMe.com matched those used on previously compromised websites.

Security Measures Taken

In response to the breach, 23andMe has taken immediate security measures. All accounts are now required to undergo a password reset, and users are advised to enable multi-factor authentication. The company is collaborating with external forensic experts and federal law enforcement to further investigate the incident.

Unanswered Questions and Concerns

Many questions remain unanswered, including whether hackers gained access to more sensitive genetic data. The threat actor suggests having the capability to expand genetic data using the imputation method, but no concrete evidence has been provided.

Financial Impact

The fallout from the breach is not limited to privacy concerns. The 23andMe share price has plummeted, experiencing a nearly 10% drop in a single day and a staggering 62% decrease since the beginning of the year.

Criticism of 23andMe’s Security

Golem criticizes 23andMe’s security measures, questioning why the company hasn’t taken stronger measures against credential stuffing attacks. The hacker raises concerns about the lack of email verification for downloading raw data and questions why 23andMe did not detect unauthorized access to customer accounts.

The leaked data, according to Golem, holds immense value, with organizations spending millions on research for similar genetic information. The breach underscores the need for robust cybersecurity practices in the rapidly evolving landscape of genetic testing services.

Thoughts

It’s crucial to reconsider sharing personal information with online companies, regardless of their assurances. Prioritizing the confidentiality of one’s data may warrant refraining from sharing it with these platforms, even if they assert their safety.

While the idea might seem appealing, it’s essential to exercise caution.

Would you like to learn more about Veroot's Cyber Security suite of products?

Related posts you may be interested in reading:

Ensuring the Cybersecurity of Electronic Logging Devices: A Call to Action from Colorado State University Researchers

Ensuring the Cybersecurity of Electronic Logging Devices: A Call to Action from Colorado State University Researchers

In a recent study conducted by researchers from Colorado State University, Electronic Logging Devices (ELDs) have been identified as significant...

Read More
Hacker Scrapes 15 Million Trello Profiles Through API

Hacker Scrapes 15 Million Trello Profiles Through API

Approximately 15 million names, usernames, and email addresses linked to public Trello boards have surfaced on the Dark Web for sale, posing a risk...

Read More