
Rackspace Technology Company Cyber Security Posture
rackspace.comRackspace Technology is a leading end-to-end hybrid cloud and AI solutions company. We can design, build, and operate our customersโ cloud environments across all major technology platforms, irrespective of technology stack or deployment model. We partner with our customers at every stage of their cloud journey, enabling them to modernize applications, build new products and adopt innovative technologies.
Rackspace Technology Company Details
rackspace-technology
7362 employees
446336.0
541
IT Services and IT Consulting
rackspace.com
Scan still pending
RAC_1895785
In-progress

Between 900 and 1000
This score is AI-generated and less favored by cyber insurers, who prefer the TPRM score.

.png)

Rackspace Technology Company Scoring based on AI Models
Model Name | Date | Description | Current Score Difference | Score |
---|---|---|---|---|
AVERAGE-Industry | 03-12-2025 | This score represents the average cybersecurity rating of companies already scanned within the same industry. It provides a benchmark to compare an individual company's security posture against its industry peers. | N/A | Between 900 and 1000 |
Rackspace Technology Company Cyber Security News & History
Entity | Type | Severity | Impact | Seen | Url ID | Details | View |
---|---|---|---|---|---|---|---|
Rackspace Technology | Ransomware | 100 | 6 | 12/2022 | RAC02841222 | Link | |
Rankiteo Explanation : Attack threatening the economy of a geographical regionDescription: Some of Rackspaceโs hosted Microsoft Exchange services were taken down by the company as a โsecurity incidentโ. The company became aware of an issue impacting its Hosted Exchange environment and proactively powered down and disconnected the Hosted Exchange environment to prevent further spread. Rackspace had no idea when it will be able to restore its service to those impacted by the security incident. Rackspace has offered impacted customers free access to Microsoft Exchange Plan 1 licenses on Microsoft 365 for the duration of the incident and shared instructions on how to get that up and running. | |||||||
Rackspace Technology | Ransomware | 75 | 2 | 08/2023 | RAC3384923 | Link | |
Rankiteo Explanation : Attack limited on finance or reputationDescription: Rackspace Technology suffered from a ransomware attack after that they prevented thousands of customers from accessing their emails and related data, costing Rackspace Technology Inc. $10.8 million in costs. In order to "investigate and remediate, legal and other professional services, and supplemental staff resources that were deployed to provide support to customers," the San Antonio-based cloud computing company paid the associated expenses. | |||||||
Rackspace | Ransomware | 100 | 5 | 6/2025 | RAC421060625 | Link | |
Rankiteo Explanation : Attack threatening the organization's existenceDescription: Rackspace, a cloud computing company, was one of the high-profile victims of the Play ransomware gang. The attack involved the theft of sensitive documents from compromised systems, which were then used to pressure the company into paying ransom demands under the threat of publishing the stolen data on the gang's dark web leak site. The ransomware gang also used a custom VSS Copying Tool to steal files from shadow volume copies, making the attack more challenging to mitigate. |
Rackspace Technology Company Subsidiaries

Rackspace Technology is a leading end-to-end hybrid cloud and AI solutions company. We can design, build, and operate our customersโ cloud environments across all major technology platforms, irrespective of technology stack or deployment model. We partner with our customers at every stage of their cloud journey, enabling them to modernize applications, build new products and adopt innovative technologies.
Access Data Using Our API

Get company history
.png)
Rackspace Technology Cyber Security News
Rackspace reports a third-straight quarterly loss as revenue falls
Rackspace reported a loss of $72 million on revenue of $665 million in the quarter that ended March 31โ down 4% from the $691 million itย ...
Enterprises to Redefine Cyber Resilience with Rackspace and Rubrik
Rackspace Cyber Recovery Cloud powered by Rubrik Enables Organizations to Restore Critical Operations Faster and More Securely than Traditionalย ...
Rackspace and Rubrik Launch Cyber Recovery Cloud for Fast, Isolated Recovery
A managed solution designed to help organizations restore critical workloads faster and more securely after a cyberattack.
Rackspace Targeted in Latest CL0P Ransomware Attack
The CL0P ransomware gang has claimed responsibility for a cyberattack against Rackspace Technology, a U.S.-based cloud storage provider, andย ...
Major Tech Alliance: Rackspace and Rubrik Unveil Game-Changing Cyber Recovery Platform that Restores in Hours
Rackspace (RXT) and Rubrik announced a strategic partnership to deliver a fully managed isolated recovery service that helps enterprises restoreย ...
Cl0p ransom gang claims Rackspace files are now published
The Cl0p ransomware gang on Monday claims to have published a slew of files belonging to US-based cloud storage company Rackspace Technology.
Rackspace and Rubrik join forces to strengthen cyber resilience
Rackspace and Rubrik are joining forces to help organizations recover faster from cyberattacks. The new solution, Rackspace Cyber Recoveryย ...
Rackspace Technology and Munster Technological University Launch Irelandโs First Quantum Cloud Platform on AWS for Research Collaboration
Rackspace Technology has partnered with Munster Technological University (MTU) in Ireland to launch QCloud, the nation's first quantum cloudย ...
Cloud security is key to cybersecurity resilience in state and local governments
The evolution of cloud technologies and the magnitude of what they are enabling in state and local government is immeasurableโfrom enabling first respondersย ...

Rackspace Technology Similar Companies

Nagarro
Nagarro helps future-proof your business through a forward-thinking, fluidic, and CARING mindset. We excel at digital engineering and help our clients become human-centric, digital-first organizations, augmenting their ability to be responsive, efficient, intimate, creative, and sustainable. Today,

Coxabengoa
Coxabengoa is a vertically integrated global utility in water and energy at the forefront of solving the greatest global challenges of the green transition by applying technologically innovative solutions with a presence in 30 countries. Global leaders in the conservation and efficient management o

Tech Mahindra
Tech Mahindra offers technology consulting and digital solutions to global enterprises across industries, enabling transformative scale at unparalleled speed. With 150,000+ professionals across 90+ countries helping 1100+ clients, TechM provides a full spectrum of services including consulting, info

Engineering Group
Engineering Group is the Digital Transformation Company, leader in Italy and expanding its global footprint, with around 14,000 associates and with over 80 offices spread across Europe, the United States, and South America and global delivery. The Engineering Group, consisting of over 70 companies

CDW
At CDW, we know how to make technology work so people can do great things. Our experts bring a full-stack, full-lifestyle approach with custom solutions, services and relationships to bring your vision to life. Through decades of experience, scale, and deep industry expertise, we deliver the full

Persistent Systems
We are an AI-led, platform-driven Digital Engineering and Enterprise Modernization partner, combining deep technical expertise and industry expertise to help our clients anticipate whatโs next. Our offerings and proven solutions create a unique competitive advantage for our clients by giving them th

Frequently Asked Questions
Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
Rackspace Technology CyberSecurity History Information
How many cyber incidents has Rackspace Technology faced?
Total Incidents: According to Rankiteo, Rackspace Technology has faced 3 incidents in the past.
What types of cybersecurity incidents have occurred at Rackspace Technology?
Incident Types: The types of cybersecurity incidents that have occurred incidents Ransomware.
What was the total financial impact of these incidents on Rackspace Technology?
Total Financial Loss: The total financial loss from these incidents is estimated to be $10.80 million.
How does Rackspace Technology detect and respond to cybersecurity incidents?
Detection and Response: The company detects and responds to cybersecurity incidents through remediation measures with Investigation and remediation, Legal and other professional services, Supplemental staff resources and incident response plan activated with True and containment measures with Powered down and disconnected the Hosted Exchange environment and recovery measures with Offered impacted customers free access to Microsoft Exchange Plan 1 licenses on Microsoft 365 and communication strategy with Shared instructions on how to get Microsoft Exchange Plan 1 licenses up and running.
Incident Details
Can you provide details on each incident?

Incident : Ransomware
Title: Play Ransomware Gang Breaches 900 Organizations
Description: The Play ransomware gang has breached roughly 900 organizations as of May 2025, three times the number of victims reported in October 2023. The gang uses recompiled malware in every attack, making it more difficult for security solutions to detect and block it. Some victims have been contacted via phone calls and threatened to pay the ransom to prevent their stolen data from being leaked online. Initial access brokers with ties to Play ransomware operators have exploited several vulnerabilities in the remote monitoring and management tool in remote code execution attacks targeting U.S. organizations.
Date Detected: June 2022
Date Publicly Disclosed: May 2025
Type: Ransomware
Attack Vector: Remote Code Execution, Malware, Phone Calls
Vulnerability Exploited: CVE-2024-57726, CVE-2024-57727, CVE-2024-57728
Threat Actor: Play Ransomware Gang
Motivation: Financial Gain

Incident : Ransomware
Title: Rackspace Technology Ransomware Attack
Description: Rackspace Technology suffered from a ransomware attack that prevented thousands of customers from accessing their emails and related data, costing Rackspace Technology Inc. $10.8 million in costs.
Type: Ransomware

Incident : Security Incident
Title: Rackspace Hosted Microsoft Exchange Security Incident
Description: Rackspace proactively powered down and disconnected its Hosted Exchange environment to prevent the further spread of a security incident.
Type: Security Incident
What are the most common types of attacks the company has faced?
Common Attack Types: The most common types of attacks the company has faced is Ransomware.
How does the company identify the attack vectors used in incidents?
Identification of Attack Vectors: The company identifies the attack vectors used in incidents through Remote Monitoring and Management Tool.
Impact of the Incidents
What was the impact of each incident?

Incident : Security Incident RAC02841222
Systems Affected: Hosted Microsoft Exchange services
Operational Impact: Service taken down
What is the average financial loss per incident?
Average Financial Loss: The average financial loss per incident is $3.60 million.
Which entities were affected by each incident?

Incident : Ransomware RAC421060625
Entity Type: Government
Industry: Public Administration
Location: California

Incident : Ransomware RAC421060625
Entity Type: Government
Industry: Public Administration
Location: Belgium

Incident : Ransomware RAC3384923
Entity Type: Cloud Computing Company
Industry: Technology
Location: San Antonio
Customers Affected: Thousands
Response to the Incidents
What measures were taken in response to each incident?

Incident : Ransomware RAC3384923
Remediation Measures: Investigation and remediation, Legal and other professional services, Supplemental staff resources

Incident : Security Incident RAC02841222
Incident Response Plan Activated: True
Containment Measures: Powered down and disconnected the Hosted Exchange environment
Recovery Measures: Offered impacted customers free access to Microsoft Exchange Plan 1 licenses on Microsoft 365
Communication Strategy: Shared instructions on how to get Microsoft Exchange Plan 1 licenses up and running
Data Breach Information
What measures does the company take to prevent data exfiltration?
Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Investigation and remediation, Legal and other professional services, Supplemental staff resources.
How does the company handle incidents involving personally identifiable information (PII)?
Handling of PII Incidents: The company handles incidents involving personally identifiable information (PII) through was Powered down and disconnected the Hosted Exchange environment.
Ransomware Information
Was ransomware involved in any of the incidents?

Incident : Ransomware RAC421060625
Ransomware Strain: Play
How does the company recover data encrypted by ransomware?
Data Recovery from Ransomware: The company recovers data encrypted by ransomware through Offered impacted customers free access to Microsoft Exchange Plan 1 licenses on Microsoft 365.
Lessons Learned and Recommendations
What recommendations were made to prevent future incidents?

Incident : Ransomware RAC421060625
Recommendations: Keep systems, software, and firmware up to date, Implement multifactor authentication (MFA) across all services, Maintain offline data backups, Develop and test a recovery routine
What recommendations has the company implemented to improve cybersecurity?
Implemented Recommendations: The company has implemented the following recommendations to improve cybersecurity: Keep systems, software, and firmware up to date, Implement multifactor authentication (MFA) across all services, Maintain offline data backups, Develop and test a recovery routine.
References
Where can I find more information about each incident?

Incident : Ransomware RAC421060625
Source: FBI

Incident : Ransomware RAC421060625
Source: CISA

Incident : Ransomware RAC421060625
Source: Australian Cyber Security Centre
Where can stakeholders find additional resources on cybersecurity best practices?
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: FBI, and Source: CISA, and Source: Australian Cyber Security Centre.
Investigation Status
How does the company communicate the status of incident investigations to stakeholders?
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through was Shared instructions on how to get Microsoft Exchange Plan 1 licenses up and running.
Initial Access Broker
How did the initial access broker gain entry for each incident?

Incident : Ransomware RAC421060625
Entry Point: Remote Monitoring and Management Tool
Backdoors Established: Sliver beacons
Additional Questions
General Information
Who was the attacking group in the last incident?
Last Attacking Group: The attacking group in the last incident was an Play Ransomware Gang.
Incident Details
What was the most recent incident detected?
Most Recent Incident Detected: The most recent incident detected was on June 2022.
What was the most recent incident publicly disclosed?
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on May 2025.
Impact of the Incidents
What was the highest financial loss from an incident?
Highest Financial Loss: The highest financial loss from an incident was $10.8 million.
What was the most significant system affected in an incident?
Most Significant System Affected: The most significant system affected in an incident were Email, Related Data and Hosted Microsoft Exchange services.
Response to the Incidents
What containment measures were taken in the most recent incident?
Containment Measures in Most Recent Incident: The containment measures taken in the most recent incident was Powered down and disconnected the Hosted Exchange environment.
Lessons Learned and Recommendations
What was the most significant recommendation implemented to improve cybersecurity?
Most Significant Recommendation Implemented: The most significant recommendation implemented to improve cybersecurity was Keep systems, software, and firmware up to date, Implement multifactor authentication (MFA) across all services, Maintain offline data backups, Develop and test a recovery routine.
References
What is the most recent source of information about an incident?
Most Recent Source: The most recent source of information about an incident are FBI, CISA and Australian Cyber Security Centre.
Initial Access Broker
What was the most recent entry point used by an initial access broker?
Most Recent Entry Point: The most recent entry point used by an initial access broker was an Remote Monitoring and Management Tool.
What Do We Measure?
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
These are some of the factors we use to calculate the overall score:
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.
