Ultrahuman data breach accessed customer wellness records
TL;DR. Wearable ring maker Ultrahuman confirmed a data breach exposed customer wellness data via an internal tool after an employee's laptop was infected with malware. - The attackers accessed customer names, email addresses, and detailed physical activity data. - Customer passwords and financial data were not compromised in the incident. - Ultrahuman has secured the vulnerable tool and reported the breach to authorities.
- Ultrahuman disclosed a data breach that allowed unauthorized access to sensitive customer wellness information.
- The breach originated from credentials stolen from a malware-infected employee laptop, compromising an internal tool.
- Exposed data included names, email addresses, and extensive physical activity metrics, but not passwords or financial details.
- Ultrahuman has remediated the security flaw and notified affected customers and regulatory bodies.