← CME Group

2013 CME Group — ClearPort cyber intrusion; customer information compromised; credential resets

2013 Unknown records affected Share on X

Data compromised

Customer contact and authentication artifacts per exchange advisories—firms notified directly with limited public row-level accounting

Technical writeup

CME Group publicly acknowledged a July 2013 cyber intrusion affecting customer information tied to its ClearPort cleared-derivatives workflows, stressing no evidence that Globex trading or broader clearing services were disrupted. Press citing people familiar with the probe described thousands of platform credentials caught up in the incident, prompting forced password rotations and a federal criminal investigation—classic pre-cloud exchange-era perimeter breach fallout.

Root cause

External intrusion against customer-connectivity / clearing-support systems (details sparse in public vendor statement era)

References