Dell investigates data breach claims after hacker leaks employee info
Dell has confirmed to BleepingComputer that they are investigating recent claims that it suffered a data breach after a threat actor leaked the data for over 10,000 employees.
The allegations were published yesterday by a threat actor named "grep," who alleges that the computing vendor suffered a "minor data breach" in September 2024, exposing internal employee and partner information.
In a post to a hacking forum, the threat actor says the stolen data includes employees' unique identifiers, full names of employees for Dell and partners, status of employees (active or not), and an internal identification string.

Though only a small sample of the data was shared for free, a link to the entire database can be revealed by spending 1 BreachForums credit, valued at approximately $0.30.
Responding to a request for a comment on the threat actor's post, the computer giant told BleepingComputer that they are investigating the claims.
"We are aware of the claims and our security team is currently investigating," Dell told BleepingComputer.
It is worth noting that the same user, grep, claimed another high-profile data breach on September 9, 2024, when he posted data allegedly stolen from the French IT giant Capgemini.
The threat actor alleged to hold 20 GB of data, including source code, credentials, private keys, API keys, employee data, T-Mobile virtual machine logs, documents, and more, which was leaked for free.
BleepingComputer contacted Capgemini at the time to ask about grep's claims but did not receive a reply.
Earlier this year, Dell suffered a data breach after a company API was abused to steal 49 million customer records
macOS Sequoia change breaks networking for VPN, antivirus software
Ukraine bans Telegram on military, govt devices over security risks
CVE-2024-20439 Cisco Smart Licensing Utility Static Credential Vulnerability
CVE-2025-2783 Google Chromium Mojo Sandbox Escape Vulnerability
CVE-2019-9874 Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability
CVE-2019-9875 Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability
CVE-2025-30154 reviewdog/action-setup GitHub Action Embedded Malicious Code Vulnerability
CVE-2025-1316 Edimax IC-7100 IP Camera OS Command Injection Vulnerability
CVE-2024-48248 NAKIVO Backup and Replication Absolute Path Traversal Vulnerability
CVE-2017-12637 SAP NetWeaver Directory Traversal Vulnerability
CVE-2025-24472 Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability
InformationalInformation Disclosure - Suspicious Comments
InformationalRe-examine Cache-control Directives
CWE-536 Servlet Runtime Error Message Containing Sensitive Information
CWE-1420 Exposure of Sensitive Information during Transient Execution
MediumCWE-1007 Insufficient Visual Distinction of Homoglyphs Presented to User
CWE-217 DEPRECATED: Failure to Protect Stored Data from Modification
CWE-794 Incomplete Filtering of Multiple Instances of Special Elements
Free online web security scanner