Welcome to Maiden Century's Trust Center. Our commitment to data privacy and security is embedded in every part of our business. Use this Trust Center to learn about our security posture and request access to our security documentation.
Furthermore, our ongoing dedication to enhancing data protection measures entails regular assessments and updates to adapt to evolving security landscapes. By entrusting Maiden Century, you can rest assured that your sensitive information is safeguarded with the utmost vigilance. We continuously strive to exceed industry standards, offering comprehensive security features and proactive monitoring to mitigate risks effectively.
We're aware of Sisense's breach disclosure. We're not a customer of their platform so we have no direct impact. However, just like most companies are, we're still in the process of reaching out to all of our critical third-parties to identify any potential exposure from them. So far, we have not discovered any.
On March 29, 2024, we became aware of a backdoor vulnerability liblzma [CVE-2024-3094] and promptly investigated all of our environments against this new threat. After thorough investigation, we found no vulnerable versions anywhere in our environment.
Additional resources:
Global announcement - OSS Security Notification: https://www.openwall.com/lists/oss-security/2024/03/29/4 https://access.redhat.com/security/cve/CVE-2024-3094
Link to CSM Security Center notification:
Link to CSM Vulnerabilities explorer: https://app.datadoghq.com/security/csm/vm?query=status%3AOpen%20cve%3ACVE-2024-3094%20&group=vulnerability
Maiden Century does not use CircleCI for continuous integration and continuous delivery.
Okta released a statement on March 22nd, 2022 regarding a security incident that may have affected their customers. Maiden Century leverages Okta as an authentication provider for internal authentication. Our team has received notice from Okta that neither we nor our customers were affected by this incident.
If you need help using this Trust Center, please contact us.
If you think you may have discovered a vulnerability, please send us a note.