Skip to main content

Share story

Security

Canva reports third-party breach affecting 424 organisations in Türkiye

Canva reports third-party breach affecting 424 organisations in Türkiye Image: Primary
Canva reported a breach at feedback platform Canny that may have exposed information linked to 424 organisations and institutions in Türkiye. Attackers used a compromised connection involving one of Canny's data processors to access and extract information from the affected system, according to the incident account. The exposed material included employee names, business contact details and, for some organisations, documents such as order forms, invoices and agreements. Canva said it removed Canny's access to its customer relationship tool and notified affected parties where required. The company said its own platform was not compromised and that user accounts, passwords and designs remain secure. Türkiye's data protection authority is investigating; the number of affected individuals is undetermined.
Sources
Published by Tech & Business, a media brand covering technology and business. This story was sourced from teiss and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Security Infrastructure
Security Infrastructure

CISA adds two exploited Check Point flaws to federal fix list

The U.S. Cybersecurity and Infrastructure Security Agency added two Check Point Security Gateway flaws to its list of known exploited vulnerabilities and told federal agencies to apply fixes or mitigations by September 25. Check P...

Security Infrastructure
Security Infrastructure

Analysis identifies two flaws behind exploited MikroTik router takeover chain

CERT Polska has identified the two RouterOS SSH flaws behind a previously reported attack that can give intruders administrative control of exposed MikroTik routers without completing authentication. One flaw lets a connection rea...

Security
Security

FBI investigates ShinyHunters claim of employee data theft

The FBI is investigating ShinyHunters' claim that it stole personal information about thousands of current and former agency employees after exploiting a previously unknown flaw on FBIJobs.gov, Ars Technica reported. The group als...