← All stories
● Covered by 1 source · 1 reportMedium impact1 negative

LexisNexis takes Diligence, Metabase API, and Newsdesk services offline due to suspicious activity

🔄 Updated 1d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • LexisNexis took three services offline due to suspicious activity.
  • The incident occurred on servers hosted by a third-party vendor.
  • A cybersecurity forensic firm is assisting with the investigation.
  • Services are being rebuilt in a new environment before restoration.

Services Disconnected Following Suspicious Activity

LexisNexis proactively took its Nexis Diligence, Nexis Metabase API, and Nexis Newsdesk services offline. This action was a direct response to the identification of unusual activity on servers that are hosted and managed by an unnamed third-party vendor. The company stated that the decision was made to protect customers and contain the issue at its source by disconnecting from the affected third-party systems.

Investigation and Remediation Efforts Underway

LexisNexis has initiated an investigation into the incident, enlisting the assistance of a cybersecurity forensic firm. The company is in the process of rebuilding the affected systems in a new, secure environment. Services will remain offline until this remediation is complete and the systems are deemed safe to bring back online.

Impact on Key LexisNexis Offerings

The affected services are critical components of LexisNexis's offerings. Nexis Diligence is a platform for due diligence and risk research, widely used by compliance professionals. Nexis Metabase API provides news and media data feeds for integration into enterprise systems, while Nexis Newsdesk is a media monitoring and analytics service utilized by communications, public relations, and marketing teams. These services are used by corporations, law firms, financial institutions, government agencies, consultants, and researchers globally.

Clarification on Related Incidents

Todd Larsen, president of the global Nexis Solutions division, confirmed the service shutdown was due to suspicious activity on vendor servers. He clarified that Nexis Solutions does not use Metabase Cloud services, distinguishing this incident from a recent data-theft attack targeting Metabase Cloud's hosting service via a zero-day SQL injection vulnerability. This incident is also separate from a May 2025 cybersecurity event where hackers stole personal data from GitHub repositories, and a March incident involving the 'React2Shell' flaw in LexisNexis's AWS.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~7 min · 6 stories · Aug 15

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

LexisNexis disconnected its Diligence, Metabase API, and Newsdesk services after detecting unusual activity on servers managed by a third-party vendor. The company is investigating the incident with a cybersecurity forensic firm and rebuilding systems in a new environment before restoring services. This incident impacts users of LexisNexis's risk research, data feed, and media monitoring platforms.