Provider
PantheonIncident detail
Security Advisory: Unauthorized Access via Credential Stuffing
Timeline window
Started
Get alerted the next time Pantheon breaks
Free email alerts for the handful of vendors you cannot afford to miss. No card, live in about a minute. Paid plans add Slack, Teams, Discord, and webhook delivery across your whole stack, plus higher API quotas.
Timeline
Incident updates
Every update on the official status source, oldest to newest, exactly as it appeared there.
Investigating
We are currently investigating reports of unauthorized access to a small number of Pantheon customer accounts.
Our evidence suggests these accounts were accessed using credentials stolen from external third-party data breaches (unrelated to Pantheon). This technique, known as "credential stuffing," relies on reused passwords.
Investigating
We are continuing to investigate this issue.
Investigating
Our team is still investigating the issue. The next update will be in 6 hours or when a new major update comes.
Keep exploring
More from Pantheon
Neighboring incidents on Pantheon's timeline and the rest of their record on OutageDeck.