Hackers breach StackOverflow but steal no user data

The Q&A site confirmed a security incident over the weekend but says no customer data was taken

Image of the homepage for StackOverflow

One of the most popular question and answer (Q&A) sites for developers sustained a breach over the weekend, with attackers gaining access to production systems.

Executives with StackOverflow confirmed an attack on their systems last Saturday, 11 May, but added the unknown malicious actors did not take any customer or user data.

"Over the weekend, there was an attack on Stack Overflow," said the platform's vice president of engineering Mary Ferguson. "We have confirmed that some level of production access was gained on May 11."

The platform is among the most widely-accessed by computer programmers and developers. StackOverflow says more than 50 million users visit the site each month to pose development questions or provide answers themselves.

Advertisement
Advertisement - Article continues below
Advertisement - Article continues below

It's also used by rookie developers as a means to familiarise themselves with coding principles and practices, although some have criticised the platform for recently growing intolerant of new programmers.

"We discovered and investigated the extent of the access and are addressing all known vulnerabilities," Ferguson continued.

"We have not identified any breach of customer or user data. Our customers' and users' security is of the utmost importance to us. After we conclude our investigation cycle, we will provide more information."

The company has provided little information about the incident, including a timeline, and no technical analysis of how the breach occurred.

The platform is so integral to the wider programming community that one Twitter user even quipped: "I can bet the hacker used StackOverflow to help him code the hack!!"

IT Pro approached StackOverflow with a series of further questions around the hack but did not get a response at the time of publication.

Advertisement - Article continues below

Six months ago another popular Q&A site, Quora, suffered a security breach in which 100 million users' information was exposed. A "malicious third party" had gained unauthorised to the site, the company confirmed, and made away with users' email addresses, passwords, names and any other information tied to social media accounts linked with Quora accounts.

Featured Resources

How inkjet can transform your business

Get more out of your business by investing in the right printing technology

Download now

Journey to a modern workplace with Office 365: which tools and when?

A guide to how Office 365 builds a modern workplace

Download now

Modernise and transform your sales organisation

Learn how a modernised sales process can drive your business

Download now

Your guide to managing cloud transformation risk

Realise the benefits. Mitigate the risks

Download now
Advertisement

Recommended

Visit/security/internet-security/354417/avast-and-avg-extensions-pulled-from-chrome
internet security

Avast and AVG extensions pulled from Chrome

19 Dec 2019
Visit/security/354156/google-confirms-android-cameras-can-be-hijacked-to-spy-on-you
Security

Google confirms Android cameras can be hijacked to spy on you

20 Nov 2019

Most Popular

Visit/operating-systems/microsoft-windows/354789/microsoft-pulls-disastrous-windows-10-security-update
Microsoft Windows

Microsoft pulls disastrous Windows 10 security update

17 Feb 2020
Visit/mobile/28299/how-to-use-chromecast-without-wi-fi
Mobile

How to use Chromecast without Wi-Fi

5 Feb 2020
Visit/business/business-operations/354790/hp-shareholders-invited-to-come-dine-with-xerox
Business operations

HP shareholders invited to come dine with Xerox

17 Feb 2020
Visit/operating-systems/27717/how-to-fix-a-stuck-windows-10-update
operating systems

How to fix a stuck Windows 10 update

12 Feb 2020