Ernst & Young discloses data breach after support system hack
Ernst & Young disclosed a breach traced to a compromised third-party support-ticket platform — a reminder that outsourced ITSM tools remain a persistent blind spot in supply-chain security programmes.
Summary written by editorial AI · Source link below
Ernst & Young is notifying customers of a data breach caused by the compromise of a third-party support ticket system used by its IT personnel. [...]
Editorial Analysis
The incident highlights that even large, well-resourced organisations can be breached through sub-processors, reinforcing NIS2's emphasis on supply-chain security.
Audit all third-party ITSM and support platforms for data-handling practices and ensure they are included in your supply-chain risk assessments.
EY's breach via a third-party support tool highlights supply-chain risk that NIS2 now requires boards to actively manage.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at BleepingComputer in a new tab.