LAPSUS$ campaigns (Campaign)
ID: 735f22c2-c8d0-593c-b674-61c136f590c8
STIX ID: report--735f22c2-c8d0-593c-b674-61c136f590c8
Feed Name: Wiz Cloud Threat Landscape
Date Published: 2022-03-22
Date Updated: 2026-05-01
Author: [email protected] (Wiz Threat Research)
LAPSUS$ used large-scale social engineering to compromise user accounts, steal credentials, enumerate cloud APIs and abuse cross-account trust to exploit unpatched applications, escalate privileges, move laterally into cloud environments, exfiltrate sensitive data for extortion and delete compromised systems. The report highlights affected collaboration and code-hosting platforms (GitLab, GitHub, Jira, Confluence, SharePoint), provides a three-stage attack flow and references vendor and government advisories for detection and hardening.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
