Trellix, a cybersecurity vendor formed from the merger of McAfee Enterprise and FireEye, detected unauthorized access to a portion of its source code repository. The company activated security protocols, engaged outside forensic experts, and notified authorities and law enforcement. The incident was publicly disclosed following detection.
Confirmed exposed data includes source code and code repository content. No personal identifiable information (PII) such as names, SSNs, payment card data, medical data, or financial account data has been confirmed as exposed in the available reports. The number of affected individuals has not been disclosed, and public reports indicate this was an intrusion into a code repository, not a consumer or employee PII breach. Trellix stated there is no evidence the stolen code was maliciously used or modified.
Details about the full impact on customers or the specific states affected remain unclear. Companies that are vendors, such as Trellix, can inadvertently expose data through their products even when their clients' systems are not directly compromised. Additional information may emerge as investigations continue, and official notices may be delayed.