Skip to content

Incident detail

Security Advisory: Unauthorized Access via Credential Stuffing

Active incidentMinor5 affected services

Timeline window

Started

Get alerted the next time Pantheon breaks

Free email alerts for the handful of vendors you cannot afford to miss. No card, live in about a minute. Paid plans add Slack, Teams, Discord, and webhook delivery across your whole stack, plus higher API quotas.

Timeline

Incident updates

Every update on the official status source, oldest to newest, exactly as it appeared there.

  1. Investigating

    We are currently investigating reports of unauthorized access to a small number of Pantheon customer accounts.

    Our evidence suggests these accounts were accessed using credentials stolen from external third-party data breaches (unrelated to Pantheon). This technique, known as "credential stuffing," relies on reused passwords.

  2. Investigating

    We are continuing to investigate this issue.

  3. Investigating

    Our team is still investigating the issue. The next update will be in 6 hours or when a new major update comes.

Keep exploring

More from Pantheon

Neighboring incidents on Pantheon's timeline and the rest of their record on OutageDeck.