Sage Confirms Customer Data Breach

British software firm Sage has confirmed it is investigating a case of “unauthorised access” to data that it said occurred at some point in the past few weeks.

Sage, which makes business software including accounting and payroll programs used by customers in 23 countries, said police are investigating the breach and the data protection regulator, the Information Commissioner’s Office (ICO), has been informed.

Customer data

The incident involved personal information relating to employees at 280 UK businesses that are customers of Sage, such as employee bank account details and salary information, and the data may have been either stolen or merely viewed, according to a number of media reports citing unnamed people with knowledge of the investigation.

The data was accessed by someone using an “internal” login, according to Sage.

The company said it has notified the businesses affected and has advised them to watch for any unusual activity.

“We are investigating unauthorised access to customer information using an internal login,” Sage said in a statement. “We cannot comment further whilst we work with the authorities to investigate – but our customers remain our first priority and we are speaking directly with those affected.”

Insider threat

Computer security experts said data breaches caused by internal actors are a growing problem due to the increasing amounts of sensitive data companies handle.

As a result they advised organisations to put into place user-centric identity and access management programmes.

A recent IDC study found that only 12 percent of the businesses surveyed were highly concerned about threats posed by malicious insiders, with only 27 percent concerned about poor end-user security practices.

Are you a security pro? Try our quiz!

Matthew Broersma

Matt Broersma is a long standing tech freelance, who has worked for Ziff-Davis, ZDnet and other leading publications

Recent Posts

US Appeals Court Blocks Biden Attempt To Restore Net Neutrality Rules

End for net neutrality in US. FCC's attempt to re-enact net neutrality laws in United…

9 hours ago

US Mulls Restrictions On Chinese Drones

China fires back after US Commerce Dept says it is considering new restrictions on Chinese…

10 hours ago

Do Kwon Pleads Not Guilty In US Court

After extradition to the United States, disgraced founder of Terraform Labs Do Kwon pleads not…

12 hours ago

IBM, GlobalFoundries Settle Respective Lawsuits

Legal ceasefire. IBM and GlobalFoundries have settled their respective lawsuits against each other after years…

1 day ago

China Proposes Further Export Restrictions On Critical Mineral Tech, Batteries

Trade war latest sees Beijing proposing export restrictions on some tech used to make battery…

1 day ago

Apple Pays $95 Million To Settle Siri Lawsuit

Settlement reached after Apple was alleged to have routinely recorded private conversations after unintentional activation…

1 day ago