← RSA Security

2011 RSA SecureID compromise — spearphishing zero-day attack

2011 Unknown records affected Share on X

Data compromised

SecurID token seed data; information enabling token prediction

Technical writeup

RSA suffered a sophisticated spearphishing attack using a malicious Excel file with a zero-day Flash vulnerability. Attackers gained access to information related to RSA's SecurID two-factor authentication tokens. The breach led to subsequent attacks on Lockheed Martin and other defense contractors.

Root cause

Spearphishing with zero-day Flash exploit

References