Computer maker Framework tells all customers their data was stolen in breach
Modular computer maker Framework has notified all of its customers that hackers stole their personal data following a breach at business intelligence provider Metabase. Names, email addresses, phone numbers and physical addresses were exposed, though payment data was not affected.

Framework, the company known for making modular, repairable computers, has notified all of its customers about a data breach that exposed their personal information. According to the notification, hackers obtained customers' names, email addresses, phone numbers, and physical addresses.
The breach came to light on Thursday when several Framework customers posted on social media that they had received an email from the company disclosing the incident. Framework spokesperson Eric Schumacher confirmed to TechCrunch that the breach affected "all customers," but he declined to give an exact number of people impacted.
While Framework computers are considered a niche product, estimates suggest the company has sold hundreds of thousands of devices over the years.
Upstream vendor blamed
Framework attributed the breach to an upstream attack on Metabase, a company that provides business intelligence services. Metabase disclosed its own breach in a post on its official blog, stating that attackers exploited a previously unknown security flaw, known as a zero-day, to gain access to customer databases hosted on its cloud servers.
In its notification email, Framework included the message it received from Metabase, which confirmed that hackers had accessed Framework's specific cloud instance. Following an investigation, Framework said the stolen data included customers' personal information but did not include their payment details.
Metabase has not responded to a request for comment on the incident.


