Cybersecurity entity

Mathspace

Company

All 1 tracked stories fall under one category: data-breach. Of the tracked stories, 1 of 1 also mention Alvin Savoy, the most common co-covered peer. We currently track 1 Cybersecurity story that mention Mathspace, all published on September 8, 2026.

Last mentioned: 1d ago

Entity pulse

Recent coverage · Mathspace

1 story
6 avg impact
0% positive
100% negative

Coverage balance Negative coverage leads. Negative coverage exceeds positive coverage by 100 percentage points.

  • 100% negative

Figures are computed live from our source-verified story record — see our methodology for how impact and sentiment are derived.

What the coverage shows about Mathspace

All 1 tracked stories fall under one category: data-breach. Of the tracked stories, 1 of 1 also mention Alvin Savoy, the most common co-covered peer. We currently track 1 Cybersecurity story that mention Mathspace, all published on September 8, 2026. Each carries 2 original sources on average.

Stories tracked
1
Sources per story
2

Computed from the 1 stories linked to this entity, with beat comparisons drawn from all 4 Cybersecurity stories published in the same date window. Shares are omitted below five stories and comparisons below a twenty-story baseline.

Coverage cohort

Appears alongside

Other entities that clear the same relevance threshold in stories also covering Mathspace. Shared-story counts are live from our verified record — not editorial picks.

Timeline

  1. Public disclosure

    CTO Alvin Savoy publishes a blog post disclosing the incident.

  2. Breach confirmed

    Mathspace confirms that unauthorized parties accessed the internal reporting system and downloaded data.

  3. Mathspace upgrades Metabase

    The platform applies the update but does not complete Metabase's recommended compromise checks or identify the intrusion.

  4. Data exfiltrated

    Threat actors download personal data from Mathspace's Australian reporting database.

  5. Unauthorized access begins

    Attackers gain administrator access to Mathspace's self-hosted Metabase instance without a legitimate login.

  6. Metabase patches CVE-2026-72898

    Metabase releases fixes for a CVSS 10/10 SQL injection after exploitation in the wild as a zero-day. ShinyHunters later claims responsibility for hacking Metabase.

Stories mentioning Mathspace 1

Data Breaches Strongly negative

Mathspace Breach: 10/10 CVE Exploited, 1M+ Records Stolen

Attackers exploited CVE-2026-72898, a CVSS 10/10 SQL injection in self-hosted Metabase, to obtain admin access without a legitimate login. Mathspace's delayed patch—23 days after fixes shipped—allowed exfiltration of personal data belonging to 1,079,819 people. The incident underscores patch-latency risk and the need to complete vendor compromise checks after updating.

2 sources

Source: SecurityWeek · BleepingComputer

Mathspace is linked from 1 story on this site, each scored at or above our 35% relevance threshold — see how these pages are built.

See something wrong on this page — a misattributed entity, a wrong stat, a broken source link? Report a data issue.