The California Office of the Attorney General reported on May 17, 2023, that GoDaddy.com LLC experienced a data breach that occurred on October 16, 2019. The breach involved unauthorized remote access to a virtual private server (VPS) due to malware that captured Secure Shell (SSH) passwords.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-566826
TPRM report: https://www.rankiteo.com/company/godaddy
"id": "god123072625",
"linkid": "godaddy",
"type": "Breach",
"date": "10/2019",
"severity": "25",
"impact": "1",
"explanation": "Attack without any consequences"
{'affected_entities': [{'industry': 'Web Hosting',
'name': 'GoDaddy.com LLC',
'type': 'Company'}],
'attack_vector': 'Malware',
'date_detected': '2023-05-17',
'date_publicly_disclosed': '2023-05-17',
'description': 'Unauthorized remote access to a virtual private server (VPS) '
'due to malware that captured Secure Shell (SSH) passwords.',
'impact': {'systems_affected': ['VPS']},
'initial_access_broker': {'entry_point': 'VPS'},
'post_incident_analysis': {'root_causes': 'Malware capturing SSH passwords'},
'references': [{'date_accessed': '2023-05-17',
'source': 'California Office of the Attorney General'}],
'title': 'GoDaddy Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'SSH password capture'}