Fujitsu confirms malware on work computers and possible data theft
- Organization
- Fujitsu
- Exploit
- Hacking
- Industry
- Technology
Fujitsu disclosed on March 15, 2024 that it had found malware on several work computers on its corporate network and that files containing personal information and customer information may have been taken. The Japanese technology company said it identified the infection during an internal investigation.
Fujitsu said it disconnected the affected machines as soon as the malware was detected and strengthened monitoring across its remaining systems while it worked out how the infection began. At the time it did not identify the malware family, name the attackers or say how many people or customers were involved, and no ransomware group claimed the incident.
The company reported the matter to Japan's Personal Information Protection Commission and began contacting individuals and customers whose data might have been affected. It said it had received no reports of the information being misused.
Fujitsu published the results of its investigation on July 9, 2024. It said 49 business computers, all used on its internal network in Japan, had been infected, and that the malware used techniques designed to evade detection rather than encrypt files, executing copy commands that moved files out. Some of those files contained personal and business information belonging to certain customers. Fujitsu said it found no evidence that its customer-facing services or customers' own network environments had been reached.