
Work Here?
Framework makes modular, upgradeable laptops that are designed to last, focusing on sustainability and repairability. Its products, the Framework Laptop 13 and 16, let users swap and upgrade components such as processors, memory, and storage to keep up with technology. Unlike many laptops with fixed designs, Framework emphasizes removable modules and easy upgrades, while also discounting older generations to invite more customers into the ecosystem. The company aims to reduce electronic waste by offering durable, customizable devices that customers can repair and extend.
Industries
Hardware
Industrial & Manufacturing
Design
Consumer Goods
Company Size
51-200
Company Stage
Early VC
Total Funding
$45.3M
Headquarters
San Francisco, California
Founded
2019
See people who can refer or advise you
Help us improve and share your feedback! Did you find this helpful?
Total Funding
$45.3M
Above
Industry Average
Funded Over
5 Rounds
Health Insurance
Company Equity
Paid Vacation
Paid Parental Leave
Flexible Work Hours
Remote Work Options
401(k) Retirement Plan
401(k) Company Match
Metabase sqli zero-day exploited: data theft attacks confirmed. This article was written by a language model from the source above and was not reviewed by a human before publication. Verify anything operational against the original. Editorial policy Key points * " Metabase Cloud and self-hosted instances are compromised via a critical SQL injection zero-day, leading to customer data theft. * " Affected systems include Metabase versions 1.58 and above, including 0.58.x through 0.63.x branches. * " Immediately upgrade self-hosted Metabase instances to patched versions and follow post-compromise remediation steps. A critical, unauthenticated SQL injection zero-day vulnerability in Metabase, affecting versions 1.58 and above, has been actively exploited in the wild, leading to data theft from customer instances. Metabase, a popular open-source business intelligence platform, disclosed the attacks, confirming that its Metabase Cloud SaaS platform was compromised. Self-hosted installations are also vulnerable if not updated, posing a significant risk to organizations utilizing the platform, according to BleepingComputer. Metabase has identified and blocked the attack endpoints, subsequently rolling out a fix for the vulnerability. This unauthenticated SQL injection flaw allows a remote attacker to gain administrator access to a customer's Metabase instance. With administrative control, attackers can alter application configurations, steal stored credentials for connected databases, access any data available through those connections, and export sensitive information. Technical details of the Metabase sqli zero-day vulnerability. The zero-day, described by Metabase as a 'CRITICAL' vulnerability with a CVSS score of 10.0, enables attackers to inject arbitrary SQL into the Metabase application database. This critical flaw grants immediate administrative access without requiring any prior authentication. The broad capabilities afforded by this access include: * Configuration Manipulation: Attackers can modify Metabase application settings. * Credential Theft: Stored credentials for any connected databases can be exfiltrated. * Data Exfiltration: Any data accessible via database connections can be read and exported. The exploitation of this vulnerability has already impacted several organizations. Laptop manufacturer Framework confirmed that its Metabase instance was compromised on August 3, leading to the theft of customer information. This data included full names, email addresses, login IP addresses, billing and shipping address information, phone numbers, and company names. For Framework for Business customers, additional data such as VAT, EIN, and billing email addresses may also have been exposed. Online form builder Tally also reported a compromise of its Metabase analytics environment on August 3. Attackers accessed email addresses and cryptographic hashes of user passwords. Tally clarified that user forms and submitted answers, stored separately, were not affected. LexisNexis, while not explicitly linking its incident to this specific Metabase API vulnerability, confirmed that its Metabase API was impacted by a cyberattack on a third-party vendor earlier this week, causing service disruptions. Metabase states that all its Cloud customers have been automatically upgraded and patched. However, organizations running self-hosted Metabase instances must perform manual updates to secure their systems against this active threat. Mitigation and remediation for Metabase 1.58+ unauthenticated SQL injection. Given the active exploitation and critical nature of this vulnerability, immediate action is paramount for all self-hosted Metabase users. The following steps are crucial for Metabase 1.58+ unauthenticated SQL injection remediation: * Immediate Upgrade: Update all vulnerable Metabase installations to the patched versions. The minimum safe releases are 0.58.24, 0.59.21, 0.60.17, 0.61.11, 0.62.9, and 0.63.5. * Temporary Workaround: If immediate upgrading is not possible, temporarily block access to the /api/session/reset_password endpoint. This serves as a critical, albeit temporary, measure to prevent exploitation. * Post-Compromise Actions: For any potentially compromised instances, Metabase strongly recommends: * Revoking all active user sessions. * Reviewing API keys and administrator accounts for any unauthorized changes. * Rotating credentials for all connected databases. * Inspecting application logs and query history for signs of compromise. How to detect Metabase data theft compromise. Organizations should actively look for indicators of compromise (IOCs) in their system logs to detect Metabase data theft compromise. Attacks can be identified by a POST request to /api/session/reset_password returning a 400 status code, immediately followed by a successful GET request to /api/user/current. The presence of these entries in system logs strongly suggests that an instance has been compromised, and a full forensic investigation should be initiated immediately.
Framework data breach exposes customer information via vendor. technology TrendPulse AI Analysis This article covers technology trends, sourced from TechCrunch. Its AI system has analyzed the key points and extracted the most relevant insights for decision-makers. Below is the structured breakdown of the original content. Quick summary. * Modular laptop manufacturer Framework has confirmed a data breach affecting its entire customer base, resulting in the theft of names, email addresses, phone numbers, and physical addresses. * The incident originated from a supply chain attack on Metabase, a business intelligence provider, which suffered a zero-day exploit that allowed unauthorized access to cloud-hosted databases. * While personal contact information was compromised, the company confirmed that no customer payment data or financial records were accessed during the breach. Key details. Framework, known for its focus on repairability and modular hardware, recently alerted its user base to a significant security incident. According to company spokesperson Eric Schumacher, the breach impacted all customers, though the firm has not disclosed the exact number of individuals affected. While the company occupies a niche segment of the PC market, industry estimates suggest the user base spans hundreds of thousands of device owners. The breach was not a direct attack on Framework's own infrastructure but rather a downstream consequence of a security failure at Metabase. Metabase publicly disclosed that attackers utilized an unknown security flaw - a zero-day vulnerability - to bypass protections and gain access to customer databases stored on their cloud servers. Framework's internal investigation confirmed that while their cloud instance was accessed, sensitive financial data remained secure. The hackers exploited the bug to give them the ability to access customers' databases stored on Metabase's cloud servers. Why this matters. This incident highlights the growing fragility of the modern software supply chain. Even companies with strong internal security protocols remain vulnerable to the weaknesses of their third-party vendors. For executives and IT decision-makers, this serves as a stark reminder that vendor risk management is no longer a secondary concern but a critical component of an organization's overall cybersecurity posture. As businesses increasingly rely on specialized SaaS tools for business intelligence and data analytics, the attack surface expands significantly. Organizations must prioritize rigorous vendor auditing and demand transparency regarding the security practices of their partners. Moving forward, companies should adopt a 'zero-trust' approach to third-party integrations, ensuring that even if a vendor is compromised, the blast radius of the stolen data is strictly limited. The bottom line. The Framework breach underscores the urgent need for companies to treat third-party vendor security as a core extension of their own internal risk management strategy. This article has been processed and analyzed by TrendPulse AI for informational purposes. Content may have been summarized or restructured for clarity.
Upgradable laptop maker Framework suffers breach affecting all customers. The hacker accessed data on Framework customer names, email addresses, phone numbers, and physical addresses via an attack on third-party provider Metabase. Principal Reporter OUR EXPERT When he's not battling bugs and robots in Helldivers 2, Michael is reporting on AI, satellites, cybersecurity, PCs, and tech policy. Edited By: August 7, 2026 (Credit: PCMag/Michael Kan) A hacker breached upgradable laptop maker Framework Computer and accessed a customer database. The San Francisco PC maker began notifying customers on Thursday, saying the breach exposed "customer names, email addresses, phone numbers, and [shipping] addresses," but not order or payment information. The breach occurred through a third-party company called Metabase, which uses AI to deliver "business intelligence" to its 100,000+ clients, which include McDonald's and Capital One. The hacker used a previously unknown "zero-day" vulnerability in the Metabase Cloud system affecting versions 1.58 and above. "We also discovered that the attacker was able to gain access to your instance," Metabase told Framework on Thursday morning. You May Also Like Keep Watching Sweeping Router Ban, Changing Your Gmail Name, Pixel 11 Leaks | Tech Today Framework has been reviewing the logs provided by Metabase, and they show that the hacker accessed data on customer login IP addresses and full billing and shipping addresses. For business customers, Framework is still determining whether the company name, phone number, and billing email were exposed. (Credit: Framework/PCMag) In the meantime, the PC maker said that "No other personally identifiable information, order information, or payment information was accessed." It's unclear whether the attacker downloaded all the exposed data. Still, a Framework spokesperson tells PCMag the breach affects all customers. Metabase's own investigation remains ongoing, so it's possible that more data and corporate clients were affected. In response, Framework says it "rotated credentials on all databases associated with our Metabase instance and confirmed that there were no changes in admin access or access to systems outside of Metabase." Metabase says it's already patched the zero-day vulnerability. In January 2024, Framework also reported a breach involving a third-party accounting firm, Keating Consulting, that exposed customer names and email addresses. About its expert. Michael Kan Principal Reporter Experience I've been a journalist for over 15 years. I got my start as a schools and cities reporter in Kansas City and joined PCMag in 2017, where I cover satellite internet services, cybersecurity, PC hardware, and more. I'm currently based in San Francisco, but previously spent over five years in China, covering the country's technology sector. Since 2020, I've covered the launch and explosive growth of SpaceX's Starlink satellite internet service, writing 600+ stories on availability and feature launches, but also the regulatory battles over the expansion of satellite constellations, fights with rival providers like AST SpaceMobile and Amazon, and the effort to expand into satellite-based mobile service. I've combed through FCC filings for the latest news and driven to remote corners of California to test Starlink's cellular service. I also cover cyber threats, from ransomware gangs to the emergence of AI-based malware. In 2024 and 2025, the FTC forced Avast to pay consumers $16.5 million for secretly harvesting and selling their personal information to third-party clients, as revealed in my joint investigation with Motherboard. I also cover the PC graphics card market. Pandemic-era shortages led me to camp out in front of a Best Buy to get an RTX 3000. I'm now following how the AI-driven memory shortage is impacting the entire consumer electronics market. I'm always eager to learn more, so please jump in the comments with feedback and send me tips. Areas of Expertise Latest By Michael Kan
Framework: Framework laptops Hit by Data Breach Exposing All Customers. Framework Laptop Maker Discloses Major Data Breach Affecting All Customers Framework, the San Francisco-based modular laptop company known for its right-to-repair philosophy, has confirmed a data breach exposing the personal information of its entire customer base. The incident, disclosed this week via notifications to affected users, compromised names, email addresses, phone numbers, and physical shipping addresses effectively a full directory of every individual who has purchased one of the company's devices. The breach strikes a particularly damaging blow to Framework, which has built its brand on transparency and user trust. While the company states that no payment or financial data was accessed since credit card details were not stored in the compromised system the exposed information remains highly valuable to cybercriminals. Such data is commonly exploited for phishing attacks, SIM swapping, and identity theft. Details about the breach remain limited. Framework has not specified when the unauthorized access occurred or how long attackers had access to customer data, leaving security experts questioning the company's handling of the incident. The lack of clarity stands in contrast to Framework's reputation for openness, further complicating its response. The timing of the breach adds to the fallout, as the company has positioned itself as a disruptor in the tech industry, challenging traditional manufacturers with its repairable, user-friendly designs. The incident underscores the risks even transparency-focused companies face in safeguarding customer data. "id": "fra1786127124", "linkid": "frameworkcomputer", "type": "Breach", "date": "8/2026", "severity": "85", "impact": "4", "explanation": "Attack with significant impact with customers data leaks" {'affected_entities': [{'customers_affected': 'Entire customer base (all ' 'purchasers of Framework ' 'devices)', 'industry': 'Technology (Laptop Manufacturing)', 'location': 'San Francisco, USA', 'name': 'Framework', 'type': 'Company'}], 'customer_advisories': 'Notifications sent to affected users', 'data_breach': {'personally_identifiable_information': 'Names, email ' 'addresses, phone ' 'numbers, physical ' 'shipping addresses', 'sensitivity_of_data': 'High (names, email addresses, phone ' 'numbers, physical shipping addresses)', 'type_of_data_compromised': 'Personal Information'}, 'description': 'Framework, the San Francisco-based modular laptop company ' 'known for its right-to-repair philosophy, has confirmed a ' 'data breach exposing the personal information of its entire ' 'customer base. The incident compromised names, email ' 'addresses, phone numbers, and physical shipping addresses of ' 'every individual who has purchased one of the company's ' 'devices.', 'impact': {'brand_reputation_impact': 'Damaging blow to brand built on ' 'transparency and user trust', 'data_compromised': 'Names, email addresses, phone numbers, ' 'physical shipping addresses', 'identity_theft_risk': 'High risk due to exposed personal ' 'information', 'payment_information_risk': 'None (payment data not stored in ' 'compromised system)'}, 'references': [{'source': 'Incident disclosure via notifications to affected ' 'users'}], 'response': {'communication_strategy': 'Notifications to affected users'}, 'title': 'Framework Laptop Maker Discloses Major Data Breach Affecting All ' 'Customers', 'type': 'Data Breach'} Published by Sawyer Savings Bank Hit by Data Security Incident in August 2026 Sawyer Savings Bank, a community bank based in Saugerties,... Aug 7, 2026 New npm Supply-Chain Worm "ChainDrop" Automates Package Infections at Scale A recently discovered npm supply-chain worm, dubbed ChainDrop,... Aug 7, 2026 Xplor Resamania Faces Alleged Data Breach Exposing 5.2 Million Records A threat actor has claimed responsibility for a potential... Aug 7, 2026
Framework has launched the Laptop 13 Pro, its most significant design refresh yet for the modular laptop series. The new model addresses previous battery life issues with a 74 WHr battery, up from 61 WHr in earlier versions. Key changes include a graphite aluminium finish, haptic trackpad, touchscreen display with 700 nit brightness, and LPCAMM2 memory modules. The redesign breaks compatibility with some older components, including the bottom case and keyboard. The laptop uses Intel's Core Ultra Series 3 processors and offers Ubuntu 24.04 LTS as a pre-installed option. Existing Laptop 13 owners can retrofit some new parts, though the battery, trackpad, and bottom case must be upgraded together. However, pricing has increased substantially. No model costs less than $1,500, with the review configuration approaching $3,000. LPCAMM2 memory module costs have doubled, further pushing prices upward.
Find jobs on Simplify and start your career today
Industries
Hardware
Industrial & Manufacturing
Design
Consumer Goods
Company Size
51-200
Company Stage
Early VC
Total Funding
$45.3M
Headquarters
San Francisco, California
Founded
2019
Find jobs on Simplify and start your career today