Email marketing firm MailChimp was targeted by hackers in a data breach incident.
The hackers gained access to internal customer support and account management tools to steal audience data and conduct phishing attacks.
The employees were also targeted in a social engineering attack that resulted in them losing their credential details.
These credentials were apparently used to access 319 MailChimp accounts and export audience data from 102 customer accounts and also to access API keys for a number of customers.
MailChimp notified all the impacted customers and recommended they enable two-factor authentication on their accounts.
"id": "INT224512522",
"linkid": "intuitmailchimp",
"type": "Breach",
"date": "04/2022",
"severity": "80",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"