logo

CrowdStrike catches insider feeding information to hackers

ID: 292aa861-eb5b-52ca-9a72-4cf107bd0d75

STIX ID: report--292aa861-eb5b-52ca-9a72-4cf107bd0d75

Feed Name: Bleeping Computer

Threat Score
65/100

Date Published: 2025-11-21

Date Updated: 2026-07-18

Author: Sergiu Gatlan

...
...

CrowdStrike confirmed an internal employee shared screenshots of internal systems that were later posted by extortion groups on Telegram, but says its systems were not breached and customer data was not compromised; the insider was terminated and the matter referred to law enforcement. The article also covers activity by Scattered Lapsus$ Hunters, ShinyHunters, and Scattered Spider — including claims of purchased SSO cookies, extortion attempts, and alleged Salesforce-related breaches affecting many companies, some of which have been denied by affected vendors.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.