Skip to main content
Back to overview
High

Jamf Affected by Klue Customer Data Incident

Jamf, a company specializing in Apple device management, was among roughly two dozen Klue customers impacted by a data incident.

Key points

  • Jamf was identified as one of approximately two dozen Klue customers affected by a data incident.
  • The Icarus threat group claimed responsibility for the initial attack.
  • Another hacking group reportedly obtained stolen Klue customer data and attempted direct extortion.

Connected intelligence

Signal brief

Follow the organization, likely method and potential impact to explore connected Shadow Tier intelligence.

02

Likely method

Confidentiality impact

Threat source not confirmed

03

Potential impact

Potential data exposure

Confidentiality

Published
Jul 26, 2026
Updated
Jul 28, 2026
Confidence
High
Evidence
7 sources

Structured assessment

Signal analysis

It helps compare this signal with other published signals without treating the labels as final determinations.

Threat source

Threat source not confirmed

Watch exposure paths that could affect data, operations or third-party trust.

Business impact

Potential data exposure
Impact area
Confidentiality
Likely asset
User or customer data

Mentioned entities

JamfData DisclosureJamf AffectedAppleKlueIcarusFurtherWhile theJamfBeacon

Quick context

Questions about this signal

What happened in this signal?

Jamf, a company specializing in Apple device management, was among roughly two dozen Klue customers impacted by a data incident. The incident, which became active on July 26, 2026, involved the Icarus threat group claiming responsibility for an attack. Further reports indicated that another hacking group might have obtained samples of the stolen Klue customer data and attempted to extort affected companies directly. While the full extent of Jamf's specific exposure through this third-party incident is not detailed, the broader event highlights the risks associated with supply chain compromises. Jamf's security efforts include initiatives like its Beacon threat-hunting service, which focuses on proactive detection and analysis of Mac threats, and its annual Security 360 report, which addresses key threats to Apple endpoints.

When was this signal reported?

Shadow Tier lists Jul 26, 2026 as the signal date.

Which organization is connected to this signal?

Jamf is the organization connected to this public signal.

Explore Jamf