CERT-EU: European Commission hack exposes data of 30 EU entities
ID: 8f3b8120-b2e8-500d-ada2-31d6b8a05b28
STIX ID: report--8f3b8120-b2e8-500d-ada2-31d6b8a05b28
Feed Name: Bleeping Computer
CERT-EU attributed a March cloud compromise of the European Commission to the TeamPCP threat group: attackers exploited a compromised AWS API key obtained via a Trivy supply-chain compromise, used TruffleHog to locate additional secrets, created/attached access keys to evade detection, and exfiltrated a large dataset (published by ShinyHunters) containing tens of thousands of files that potentially affect 71 Europa web hosting clients including 42 internal Commission clients and at least 29 other Union entities.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
