Anodot third-party security incident

Vimeo Staff
Vimeo logo

Update: May 15. Our investigation into this incident is now complete. Users and customers whose data was potentially impacted have been contacted as appropriate.

Vimeo is aware of a security incident affecting Anodot, a third-party analytics vendor used by Vimeo and many other companies. The Google Threat Intelligence report associated with the unauthorized actor claiming responsibility for the Anodot incident can be found at this link.

We have identified that, as a result of the Anodot breach, an unauthorized actor accessed certain Vimeo user and customer data. Our initial findings suggest that the databases accessed primarily contain technical data, video titles and metadata, and, in some cases, customer email addresses.

The data accessed does not include Vimeo video content, valid user login credentials, or payment card information.

Vimeo user and customer login credentials are secure. This incident did not cause any disruption to our systems or service.

Upon learning of the incident, we promptly disabled all Anodot credentials, removed the Anodot integration with Vimeo systems, and engaged third-party security experts to assist with the investigation. We have also notified law enforcement.

Vimeo Security

Filed under:

Photo of Vimeo Staff

Vimeo Staff

More from the Vimeo blog

Blog post head image alt text

HIPAA considerations for ensuring privacy and security for healthcare video content

Vimeo video SSO capabilities and other security features

Why you should really be using single sign-on (SSO) to secure your video storage

Business associate agreements and HIPAA compliance for video platforms

The role of Business Associate Agreements (BAA): HIPAA considerations for video platforms

Security features list like SOC 2 Type II and SSO

Is your video platform secure? How to be SOC 2 compliant

Vimeo offers a holistic video hosting and streaming platform for businesses and async team communications. See how Microsoft Stream (in Sharepoint), OneDrive, and Microsoft Teams compare on quality.

Vimeo vs. Microsoft: Which video software should you choose?

Vimeo’s Chief Information Security Officer announces new HIPAA-compliant video solutions for healthcare companies.

What healthcare providers need to know about video and HIPAA

We believe in the power of video to spread truth in a way that no other medium can, especially when the risk of propaganda becomes more dangerous.

Suspending support for new customers in Russia and updating our content guidelines

There’s a lot that goes on behind the scenes at Vimeo. Here's a detailed look at our bandwidth usage policy, including an FAQ.

Understanding bandwidth on Vimeo