Sunday, May 18, 2025
HomeAzureCommvault Confirms Zero-Day Attack Breached Its Azure Cloud Environment

Commvault Confirms Zero-Day Attack Breached Its Azure Cloud Environment

Published on

SIEM as a Service

Follow Us on Google News

Commvault, a global leader in data protection and information management, has confirmed that a sophisticated cyberattack involving a zero-day vulnerability breached its Azure cloud environment earlier this week.

The breach, attributed to a suspected nation-state threat actor, underscores the evolving risks faced by cloud service providers and their clients.

On February 20, 2025, Commvault was alerted by Microsoft regarding unauthorized activity in its Azure cloud environment.

- Advertisement - Google News

In a public statement, Commvault detailed its immediate response, which included activating its incident response protocols and engaging top-tier cybersecurity experts alongside law enforcement.

The company’s investigation revealed that the incident impacted a small number of customers. “Our investigation validated that unauthorized access affected a handful of customers and we promptly contacted them to assist,” said a spokesperson for Commvault.

The firm emphasized there was no evidence that the attacker accessed or compromised any of the data Commvault protects on behalf of its vast customer base.

Furthermore, Commvault confirmed that its business operations and ability to deliver products and services remained unaffected throughout the incident.

Details of the Attack and Response

According to forensic analysis, the attacker exploited a previously undisclosed zero-day vulnerability within Commvault’s Azure cloud environment type of security gap that even the vendor was previously unaware of.

As soon as the exploit was identified, Commvault acted swiftly to patch the vulnerability and strongly encouraged its software users to apply the update as well.

In addition to patching the vulnerability, Commvault said it rotated all impacted credentials and is working to further strengthen its security defenses.

The company is also maintaining close collaboration with law enforcement to aid in the ongoing investigation and to help prevent future attacks.

Commvault’s leadership acknowledged the broader impact of such attacks on the tech community, stating, “No company is immune to an attack. We believe that sharing information and working together makes us all more resilient.”

The company expressed gratitude to Microsoft for the timely notification, its cybersecurity experts for their rapid response, and to its customers for their trust and cooperation.

The incident serves as a reminder of the persistent and evolving nature of cyber threats targeting cloud services and managed providers.

By sharing details of the breach and its response, Commvault aims to promote greater transparency and collective action across the cybersecurity landscape.

Find this News Interesting! Follow us on Google NewsLinkedIn, & X to Get Instant Updates!

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

VMware ESXi, Firefox, Red Hat Linux & SharePoint Hacked – Pwn2Own Day 2

Security researchers demonstrated their prowess on the second day of Pwn2Own Berlin 2025, discovering...

Critical WordPress Plugin Flaw Puts Over 10,000 Sites of Cyberattack

A serious security flaw affecting the Eventin plugin, a popular event management solution for...

Sophisticated NPM Attack Leverages Google Calendar2 for Advanced Communication

A startling discovery in the npm ecosystem has revealed a highly sophisticated malware campaign...

New Ransomware Attack Targets Elon Musk Supporters Using PowerShell to Deploy Payloads

A newly identified ransomware campaign has emerged, seemingly targeting supporters of Elon Musk through...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

VMware ESXi, Firefox, Red Hat Linux & SharePoint Hacked – Pwn2Own Day 2

Security researchers demonstrated their prowess on the second day of Pwn2Own Berlin 2025, discovering...

Critical WordPress Plugin Flaw Puts Over 10,000 Sites of Cyberattack

A serious security flaw affecting the Eventin plugin, a popular event management solution for...

Sophisticated NPM Attack Leverages Google Calendar2 for Advanced Communication

A startling discovery in the npm ecosystem has revealed a highly sophisticated malware campaign...