Cylance confirms data breach linked to 'third-party' platform
ID: 7c36558f-d90f-5c3b-891c-cce8e4ce4185
STIX ID: report--7c36558f-d90f-5c3b-891c-cce8e4ce4185
Feed Name: Bleeping Computer
A threat actor is selling what is claimed to be 34 million Cylance-related emails/PII for $750,000; BlackBerry Cylance says the data appears to be old marketing records from a third-party (2015–2018) and that its systems/customers are not compromised. The report links this sale to wider active Snowflake account compromises attributed to UNC5537, which leveraged stolen credentials from infostealer malware and poor account protections (no MFA, missing network allow lists) to access and extort multiple organizations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
