Education giant Pearson hit by cyberattack exposing customer data
ID: 2e3d7ba5-91f9-51ab-bbdd-474def1dc9bd
STIX ID: report--2e3d7ba5-91f9-51ab-bbdd-474def1dc9bd
Feed Name: Bleeping Computer
Threat Score
**Pearson data breach via exposed GitLab token:** Pearson confirmed an unauthorized actor gained access to systems after a GitLab Personal Access Token was exposed in a .git/config file, allowing access to source code containing hard-coded credentials that were used to steal terabytes of data from cloud infrastructure (AWS, Google Cloud) and services (Snowflake, Salesforce); the company says the data is largely legacy and employee data was not included.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
