logo

Cylance confirms data breach linked to 'third-party' platform

ID: 7c36558f-d90f-5c3b-891c-cce8e4ce4185

STIX ID: report--7c36558f-d90f-5c3b-891c-cce8e4ce4185

Feed Name: Bleeping Computer

Threat Score
65/100

Date Published: 2024-06-10

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

A threat actor is selling what is claimed to be 34 million Cylance-related emails/PII for $750,000; BlackBerry Cylance says the data appears to be old marketing records from a third-party (2015–2018) and that its systems/customers are not compromised. The report links this sale to wider active Snowflake account compromises attributed to UNC5537, which leveraged stolen credentials from infostealer malware and poor account protections (no MFA, missing network allow lists) to access and extort multiple organizations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.