Ernst & Young discloses data breach after support system hack
Ernst & Young disclosed a breach traced to a compromised third-party support-ticket platform — a reminder that outsourced ITSM tools remain a persistent blind spot in supply-chain security programmes.
Summary written by editorial AI · Source link below
Ernst & Young is notifying customers of a data breach caused by the compromise of a third-party support ticket system used by its IT personnel. [...]
Editorial Analysis
Framed for the CISO & Security Leaders desk
A Big Four consultancy losing client data through a compromised third-party ticketing system underscores persistent supply-chain risk for any enterprise relying on outsourced IT support.
Review contracts and security assessments for all third-party support-ticket and ITSM platforms handling sensitive data.
EY's breach via a third-party support tool highlights supply-chain risk that NIS2 now requires boards to actively manage.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at BleepingComputer in a new tab.