← Fujitsu

2024 Fujitsu — non-ransomware worm-like malware on Japan internal PCs; possible customer file exfiltration

2024 Unknown records affected Share on X

Data compromised

Customer and personal business files potentially copied off infected workstations—categories per Fujitsu breach investigation notice

Technical writeup

Fujitsu Limited publicly traced a March 2024 discovery of advanced evasive malware on a cluster of business PCs inside its Japan corporate network, with July 2024 follow-on reporting summarizing spread to on the order of four dozen machines, deliberate file-copy behavior, and individual notifications to customers where personal or customer-project material might have left the firm's custody. Vendor statements emphasized isolation steps, no customer cloud environment impact in Fujitsu's framing, and no observed misuse of leaked data at investigation close.

Root cause

Malware infection on internal endpoints with lateral movement and exfiltration-oriented file operations (per Fujitsu and trade press)

References