"It has now been discovered that a credential within Iress' GitHub user space was stolen and used to gain access to Iress' OneVue production environment," the financial software firm said in an exchange filing.
"The OneVue production environment contains client data and we are investigating the extent and nature of the data accessed."
OneVue's production environment is isolated to the platform's businesses - MFA, Platform and OneVue Super.
Praemium (PPS.AX), which acquired OneVue Platform Business (IOPB) last month, clarified that the breach was only at the OneVue business, and no Praemium technology or client data had been compromised.
"At this time Praemium has no indication from Iress that OneVue client data has been compromised," Praemium said.
Simultaneous investigations in Iress's other business segments are being carried out and no other data breach instances have been identified yet.






