Amazon confirms employee data exposed in leak linked to MOVEit vulnerability
ID: 9f24d1f8-6d33-5f42-8bfd-58883abdb345
STIX ID: report--9f24d1f8-6d33-5f42-8bfd-58883abdb345
Feed Name: The Register (Security)
Threat Score
A trove of employee contact records—reported to include names, work emails, phone numbers, cost center codes and organizational details—was stolen via exploitation of the MOVEit authentication bypass vulnerability CVE-2023-34362 and posted/auctioned on BreachForums; Amazon reportedly accounts for ~2.86M of the >5M exposed records, and the activity is linked to the Cl0p ransomware group, raising risks for social engineering and abuse.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
