Deloitte, which ranks among the world's Top 100 Managed Security Services Providers for 2017, was hit by a major email system breach it reportedly discovered last March but kept publicly under wraps. Intruders may have been inside its network as far back as October or November, 2016, the Guardian first reported earlier today.Updated October 10, 2017: The hack may have been far larger than originally reported -- potentially including communications with 350 customers, the Guardian now says.Hackers are thought to have made away with confidential emails and strategic documents belonging to some of the $37 billion consultant’s top clients spanning banks, media organizations, multinational corporations and government agencies, the report said. So far, nobody is publicly suggesting who may be behind the theft but the likely suspects range from an individual to a competitor to a state-sponsored actor.Deloitte said today that the break-in affected “only a very few clients,” based on an internal review of its systems, Reuters reported. However, as many as five million Deloitte emails were stored in the cloud and perhaps vulnerable to the hack, the Guardian said. The accounting firm has not revealed the clients involved in the caper.“No disruption has occurred to client businesses, to Deloitte’s ability to continue to serve clients, or to consumers,” the company said. Still, as cybersecurity attack history is repeatedly showing us, the fallout from these types of things tends to scattershot wider than at first glance. We’ll keep you updated as Deloitte assesses the damage.
Deloitte Email Breach
Here’s what else you need to know (via the Guardian):- Only a few of Deloitte’s most senior partners and lawyers knew about the breach, which is thought to have been launched in the U.S.
- Attackers stole materials in Deloitte’s email system belonging to “household name” clients and U.S. government departments. The goods may have included usernames, passwords, IP addresses, architectural diagrams for businesses, health information and confidential security and design details.
- Deloitte has briefed six of its clients whose information apparently has been “impacted,” a word increasingly used as a synonym for “stolen” in these cases.
- The hacker(s) broke into Deloitte’s global email server through an administrator’s account that likely granted them privileged, unrestricted access. The account required only a single password and lacked “two-step“ verification, according to the Guardian’s sources.
- An internal inquiry, code-named Windham, is trying to trace the attackers’ trail inside Deloitte’s network. Analysts have been examining documents that may have been compromised for about six months.
- In late April, Deloitte hired Hogan Lovells, a law firm, to look into the possible repercussions from the attack.




