Blog
GoDaddy Admits 28,000 Customers Were Affected in Data Breach

GoDaddy Admits 28,000 Customers Were Affected in Data Breach

Reviewed by
Go Daddy is one of the biggest and domain registration and hosting company with roughly 19 million customers around the world. Like many big companies, they too have been targeted by hackers and announced they had a data breach.
Table of Contents
Go Daddy is one of the biggest and domain registration and hosting company with roughly 19 million customers around the world. Like many big companies, they too have been targeted by hackers and announced they had a data breach.

Key Takeaways

Even if you don't own a website, you must have heard about GoDaddy or seen one of their commercials. Go Daddy is one of the biggest and domain registration and hosting company with roughly 19 million customers around the world. Like many big companies, they too have been targeted by hackers and announced they had a data breach.

According to BleepingComputer, the breach took place on October 19th, 2019. It was discovered six months later on April 23rd, 2020, after the company's security team found a suspicious file in their hosting environment and noticed suspicious activity on a subset of GoDaddy's servers. GoDaddy notified some of its customers that an unauthorized 3rd party had used their web hosting account credentials to connect to their hosting account via SSH.

GoDaddy's Vice President for Corporate Communications gave an official statement:

"On April 23rd, 2020, we identified SSH usernames and passwords had been compromised through an altered SSH file in our hosting environment. This affected approximately 28,000 customers. We immediately reset these usernames and passwords, removed the offending SSH file from our platform, and have no indication the threat actor used our customers' credentials or modified any customer hosting accounts. To be clear, the threat actor did not have access to customers' main GoDaddy accounts."There were also reports of successful phishing attempts to GoDaddy's support employees, which could be related to the event.

What should I do if I have a GoDaddy account?

If you have or had or don't remember having a GoDaddy account, you can check if you're account had been breached for free with Guardio's scan and keep all your emails monitored. We recommend changing the credentials for any breached account, read the full step by step guide on how to handle a data breach.

{{component-cta-custom}}

CMS-based CTA:
Check if your information has been leaked
Protect yourself from identity theft & other scams, begin with a free scan.
Add Guardio to BrowserTake Security Quiz
Default CTA:
Smart protection, built for how you live online
Stay ahead of threats with real-time insights and proactive protection.
Add Guardio to BrowserTake Security Quiz
CMS-based "Did you know?" block
Did you know?
Default "Did you know?" block
Did you know?

Make sure you have a personal safety plan in place. If you believe someone is stalking you online and may be putting you at risk of harm, don’t remove suspicious apps or confront the stalker without a plan. The Coalition Against Stalkerware provides a list of resources for anyone dealing with online stalking, monitoring, and harassment.

Guardio Security Team
Guardio’s Security Team researches and exposes cyber threats, keeping millions of users safe online. Their findings have been featured by Fox News, The Washington Post, Bleeping Computer, and The Hacker News, making the web safer — one threat at a time.
Tips from the expert

Related articles

FAQs

No items found.
Table of Contents
Can You Spot a Scam Text Message?
Test your skills and learn how to protect yourself from online scams.
Take the quiz now
Can You Spot a Scam Text Message?
Test your skills and learn how to protect yourself from online scams.
Take the quiz now