Hacker claimed two Dell Technologies breaches within days in September 2024

Organization
Dell Technologies
Exploit
Hacking
Industry
Technology

Dell Technologies faced three data leak claims in the space of a week in September 2024, all posted to a criminal forum by a threat actor using the alias grep. Dell confirmed none of them.

On September 19, 2024 the actor advertised a data set said to hold records on 10,863 Dell employees and some partners. The fields described were narrow: internal employee identifiers, full names, employment status and Dell employee ID numbers. No financial data or contact details were listed. Dell told reporters that its security team was investigating the situation.

On September 22, 2024 the same actor, this time working with a second individual using the handle Chucky, claimed a further 3.5 GB of uncompressed material taken from Dell's Atlassian environment. The listing referenced Jira files, database tables and schema migrations, and mentioned Jenkins and Confluence instances used for software development and internal collaboration. Dell made no public statement about the second claim and did not respond to Tech Monitor's request for comment.

Hackread reported a third posting on September 25, 2024, in which grep released about 500 MB of Dell material including internal documents, PDFs, images, internal device testing videos and multi-factor authentication data.

The claims followed a larger incident Dell disclosed in May 2024, in which a partner portal was scraped for records tied to roughly 49 million customer orders. As of late September 2024 none of the September claims had been independently verified.

Sources