CrowdStrike catches insider feeding information to hackers
ID: 292aa861-eb5b-52ca-9a72-4cf107bd0d75
STIX ID: report--292aa861-eb5b-52ca-9a72-4cf107bd0d75
Feed Name: Bleeping Computer
CrowdStrike confirmed an internal employee shared screenshots of internal systems that were later posted by extortion groups on Telegram, but says its systems were not breached and customer data was not compromised; the insider was terminated and the matter referred to law enforcement. The article also covers activity by Scattered Lapsus$ Hunters, ShinyHunters, and Scattered Spider — including claims of purchased SSO cookies, extortion attempts, and alleged Salesforce-related breaches affecting many companies, some of which have been denied by affected vendors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
