E27
| Primary URL | Location | Industry | e27[.]co |
Country
Singapore
|
Communications
|
|---|
Profile
E27, also known as Media firm E27, is a Singapore-based media company that focuses on serving the technology startup ecosystem across Asia. The organization operates a digital platform that provides media content and hosts user accounts for individuals engaged with the Asian technology startup sector. User registration on their platform involves providing email addresses, mobile numbers, encrypted passwords, profile images, and documents, indicating services that include community interaction and content access. While specific operational scales such as user base size or geographic reach within Asia are not detailed, their specialization in technology startup media distinguishes them within the regional media landscape. The company's core function revolves around delivering information and facilitating connections for startups, though the exact portfolio of services beyond content publishing remains unspecified in available records.
In June 2020, E27 suffered a cybersecurity breach attributed to attackers using the aliases "Korean Hackers" and "Team Johnwick." The incident involved unauthorized access to systems, resulting in the exfiltration of source code and a database containing user data including emails, mobile numbers, encrypted passwords, profile images, and documents. Post-breach, the attackers demanded a financial contribution in exchange for vulnerability disclosure, suggesting an extortion motive. E27's response included notifying affected users, confirming that payment data was not stored on their systems, and advising users to update credentials due to the compromise of encrypted legacy passwords. The organization collaborated with law enforcement and cybersecurity firms to investigate and restore platform integrity, emphasizing transparency throughout the process. This event highlights the security risks inherent in managing user data for online media platforms and demonstrates E27's incident response protocol, which prioritizes user notification and operational recovery. The breach stands as a significant episode in the company's history, illustrating both the vulnerabilities of digital media services and the procedural measures taken to address such incidents.
