Schneider Electric Hacked and Blackmailed Following Lumma Infostealer Infection
ID: 1d63309f-9a1d-5bb0-ac73-8abb6a251fcf
STIX ID: report--1d63309f-9a1d-5bb0-ac73-8abb6a251fcf
Feed Name: infostealers.com
Hudson Rock reports that Schneider Electric suffered a breach where the HellCat ransomware group stole ~40GB from an internal Jira server and demanded $125,000; investigators linked the intrusion to Lumma infostealer infections on employee machines that exposed credentials (including MiniOrange REST API keys) which the attackers used to scrape hundreds of thousands of rows of user data. The report highlights widespread poor cyber hygiene among employees (weak passwords, absent AV), multiple compromised credentials tied to Jira, and recommends stronger controls such as MFA and employee education while promoting Hudson Rock's intelligence tools.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
