AMD confirms new security breach: future product information, source code and spec sheets compromised

AMD future products, source codes and other confidential information at risk of exposure after a security breach

A hacking group claims to be in possession of confidential data from AMD servers.

According to the reports, the hacking organization or individual is of ‘significant concern’, since it was involved in some large security breaches in the past (including Europol Facebook Marketplace).

The group claims to have copies of: “Future AMD products, Spec sheets, employee databases, customer databases, property files, ROMs, source code, firmware and finances”. Furthermore, AMD employee data has also been accessed.

The hacking group released a sample of data that appears to show AMD product information, however, none of the listed products or any part of the sample shows information on a product that has not yet been released. However, it is unclear if this is the only sample available. It does appear to have the information on the EPYC 4004 series, which was launched in late May.

Alleged AMD leak, Source: BreachForums

AMD has already confirmed the breach, however, the extent of the stolen data is yet to be determined. The company is now working with law enforcement.

“We are aware of a cybercriminal organization claiming to be in possession of stolen AMD data. We are working closely with law enforcement officials and a third-party hosting partner to investigate the claim and the significance of the data.”

— AMD statement

There are other times when AMD has been hacked. In 2022, as much as 450 GB of data was compromised in a separate security breach. However, no data has made its way to the public eye. It is unclear whether this group intends to release more data if no one pays them for the data.

Source: Bloomberg , Hackread