CSC ServiceWorks data breach could affect thousands of victims


CSC ServiceWorks, a company that provides internet-connected laundry machines to residential buildings, hotels, universities, and more, suffered a data breach in 2023 in which data on tens of thousands of people was compromised.
The company filed a new data breach notification in which it reported on an incident which occured in late September 2023, but stating it spotted the intruders in early February 2024, which means the crooks were dwelling in the target network for roughly five months.
During that time, they gathered sensitive information on exactly 35,340 individuals. CSC ServiceWorks confirmed which data was stolen in June 2024, meaning it took another five months to analyze the breach.
Employees affected?
The company says the threat actors stole people’s names, dates of birth, contact information, government identity documents (Social Security Numbers, driver’s license numbers, and similar), financial information (bank account numbers), and health insurance information (including some limited medical information).
Given the type of information stolen in this attack, the victims might have been current and former CSC ServiceWorks employees, but this information is yet to be confirmed.
This is not the first time CSC has made headlines for cybersecurity issues. Just a few weeks ago, researchers found a vulnerability in the machines that allowed people to get free laundry.
This followed a similar bug revealed in May 2023 in the laundry machine’s accompanying app, which allowed them to top up their laundry credit as much as they wanted. To prove their point, they even added an obscene amount of money to one account, exceeding a million dollars. Even though the company ignored the researchers at first, it later apologized for the mishap and released a fix for the flaw.
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
All of this forced CSC to create a vulnerability disclosure program.
Via TechCrunch
More from TechRadar Pro
CSC ServiceWorks, a company that provides internet-connected laundry machines to residential buildings, hotels, universities, and more, suffered a data breach in 2023 in which data on tens of thousands of people was compromised. The company filed a new data breach notification in which it reported on an incident which occured…
Recent Posts
- 3 features that would actually make me pay for a Samsung Health subscription for my Galaxy Watch – and one big problem it needs to avoid
- TikTok’s ‘ban’ problem could end soon with a new app and a sale
- 16-Core AMD EPYC 4005 CPU is almost 3X faster than AMD’s first server flagship – and I can’t believe what a bargain that is
- Samsung’s very special rugged tablet comes with eight – yes, eight – years of Android updates and hot-swappable batteries
- The latest Samsung Galaxy Z Flip 7 leak is the first hands-on video of the flip foldable
Archives
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022