Third-party data breach linked to Canva affects 424 organizations in Türkiye - Türkiye Today
Article excerpt
Highlighted: the sentence this signal was extracted from
A data breach involving Canva has affected 424 organizations and institutions operating in Türkiye, exposing personal information and corporate documents, according to the country's Personal Data Protection Authority, known by its Turkish abbreviation KVKK. Canva Pty Ltd, the company acting as the data controller, notified the authority after unauthorized access took place through a third-party system used by the platform. According to the initial assessment, threat actors exploited a connection involving a data processor and managed to take data out of the system. While 424 organizations and institutions in Türkiye were directly affected, the total number of individuals whose personal information was exposed has not yet been determined. A Canva spokesperson said: "Canny, a third-party tool Canva uses to collect product feedback, recently informed us of unauthorized access to its systems. Importantly, Canva's platform and systems were not compromised, and Canva accounts, passwords, designs and content remain secure. The unauthorized access to Canny may have allowed access to some limited routine business and contact information through its connection to our customer relationship tool. We immediately removed Canny's access and have taken the appropriate steps to notify affected customers and regulators where required." Breach reached employee and corporate records The...
Keep reading with a free account
The rest of this article, and every signal for Canva, is in your free account.
