Wesco has confirmed that it is investigating a cybersecurity event after the data extortion group ExfilSquad claimed to have stolen information from the company.
The distributor said the Wesco security incident involves its cloud-based customer relationship management environment. It added that it has worked with its CRM vendor and does not believe sensitive data faces a risk.
Wesco also said the event has not disrupted business operations. Its systems continue to operate normally, according to the company.
Company says it found no malware
A Wesco spokesperson said the company detected the incident quickly and launched an investigation. The investigation found no evidence of ransomware or other malicious software on its IT systems.
The company said it does not believe payment card details, financial account information or other sensitive customer and employee data is at risk.
Wesco has not disclosed how the third party may have accessed its CRM environment. It also has not confirmed the full scope of data involved in the incident.
That leaves a gap between the company’s assessment and the claims made by the extortion group.
ExfilSquad claims millions of records
ExfilSquad claimed it stole 2.6 million records linked to Wesco. The group alleged that the data included customer and employee personal information, account and contact records, CRM user profiles, business identifiers, authentication metadata and access-related information.
The group reportedly published data after a deadline for ransom negotiations passed. These claims remain unverified.
Extortion groups frequently make broad claims to pressure victims into paying. They may also publish samples or stolen material to increase pressure. However, a published claim does not independently prove the accuracy, completeness or sensitivity of the alleged data.
Wesco has said it does not believe sensitive information is at risk. The company has not provided further details about the alleged records.
Supply chain company operates worldwide
Wesco distributes electrical, electronic, communications, security, utility and broadband products. It also provides logistics and supply-chain services to business customers.
The Fortune 500 company employs about 21,000 people. It operates more than 700 distribution centres, fulfilment facilities and sales offices across around 50 countries.
The company generated approximately $24 billion in sales last year. Its size and global operations make any alleged exposure of CRM data a potentially significant concern for customers, staff and business partners.
Researchers have previously linked ExfilSquad activity to improperly configured Microsoft Power Pages data tables. Wesco has not confirmed a connection to that activity or identified the route used in this incident.
Conclusion
The Wesco security incident remains under investigation. ExfilSquad has claimed a major CRM data theft, but Wesco says it found no evidence that sensitive customer or employee information is at risk. Further details may emerge as the company and its cloud CRM provider complete their review.


0 responses to “Wesco Security Incident Investigated After Data Theft Claim”