Capgemini Details

    Organization Logo

    Capgemini

    Paris, France 358400 employees • Technology

    https://www.capgemini.com/us-en/
    United States

    Industry

    Technology

    Security Incidents

    1

    Capgemini is a global consulting, technology services, and digital transformation company. Founded in 1967 by Serge Kampf in Grenoble, France, the company initially specialized in IT services and consulting. Over the years, Capgemini has expanded its service offerings to include professional services, outsourcing, and a variety of technology solutions. It played a notable role in the growth of the global information technology and consulting industries.

    Through a series of strategic acquisitions and mergers, such as acquiring Ernst & Young’s consulting arm in 2000, and most recently acquiring...
    Show more

    Security Incidents

    Capgemini Breach of Sep 2024
    Severity Score
    Significant to High

    Type

    Unknown

    Summary

    Capgemini experienced a cybersecurity incident in September 2024, where a cybercriminal going by the alias "grep" claimed to have stolen and leaked approximately 20GB of sensitive data. The breached data allegedly includes source code, private keys, credentials, API keys, and other confidential information like employee data and internal configuration details for their cloud infrastructure.

    Portions of the leaked data reviewed included names, email addresses, usernames, and password hashes of Capgemini employees. Additionally, the hacker claimed to have exfiltrated large confidential files, i...
    Show more

    Severity

    In September 2024, Capgemini experienced a significant cybersecurity incident when the cybercriminal "grep" claimed to have exfiltrated and leaked approximately 20GB of sensitive data. The compromised data included highly sensitive information such as source code, private keys, credentials, API keys, and internal cloud infrastructure configurations, along with personal data of Capgemini employees like names, email addresses, usernames, and password hashes. Portions of the leaked data, including client information like T-Mobile's virtual machine logs, were shared on BreachForums, raising seriou...
    Show more

    Impact

    In September 2024, Capgemini faced a significant cybersecurity incident when the cybercriminal "grep" claimed to have exfiltrated and leaked around 20GB of sensitive data. The compromised data reportedly included source code, private keys, credentials, API keys, and internal configuration details of their cloud infrastructure. This grand exposure encompassed names, email addresses, usernames, and password hashes of Capgemini employees.

    Additionally, leaked files consisted of Terraform configuration files and T-Mobile's virtual machine logs, highlighting a severe breach in client information. ...
    Show more