Fermilab – Credential Compromise

The Fermilab physics laboratory has taken action to lock down its systems after security researchers found weaknesses exposing documents, proprietary applications, personal information, project details and credentials. Fermilab, which is part of the US Department of Energy, is a world-famous particle accelerator and physics laboratory in Batavia, Illinois. One database the researchers discovered allowed unauthenticated access to 5,795 documents and 53,685 file entries. One entry point led into Fermilab’s IT ticketing system, which displayed 4,500 trouble tickets. Also found was an FTP server that required no password and allowed anyone to log in anonymously. Other impacted systems exposed credentials, experiment data and other proprietary information that were stored with no security.

Individual Impact: No sensitive personal or financial information was confirmed as compromised in this incident, but the investigation is ongoing.

Customers Impacted: Unknown

Get In Touch

Share On Social Media

Other Recent Blog Articles

Podcast: Returning Special Guest Erik Swanson of Cardinal Services

April 22, 2024

We’re thrilled to welcome Erik Swanson of Cardinal Services as our returning special guest. Erik brings a wealth of expertise in the intersection of IT and HR, shedding light on…

Read More

Wells Fargo is back in the News!

April 22, 2024

Wells Fargo is back in the news, but this time it is because of a data breach. Banking giant Wells Fargo has sent a data breach notice to some customers.…

Read More

Safeguard Your Small Business: The Vital Role of IT Managed Services in Preventing Catastrophic Outages

April 12, 2024

In the fast-paced world of modern business, the reliance on technology has never been more significant. However, with this reliance comes the looming threat of cyberattacks, as evidenced by the…

Read More