Nikkei Breached: Infostealer Infection Grants Access to 17K+ Employee Slack Chat Histories
ID: 201505bc-574c-59d6-971f-a8872775d9aa
STIX ID: report--201505bc-574c-59d6-971f-a8872775d9aa
Feed Name: infostealers.com
Hudson Rock reports that an Infostealer infection on a Japanese endpoint in August 2025 allowed attackers to exfiltrate Slack credentials and access the nikkeidevs.slack.com workspace, exposing chat logs, user profiles, and metadata for approximately 17,368 accounts; the analysis outlines common Infostealer TTPs (browser token/cookie theft, payload delivery via cracked software or phishing), highlights the wider market of stolen Slack credentials, and recommends mitigations such as enforcing MFA, credential monitoring, and endpoint detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
