BORN Group Supply Chain Breach: In-Depth Analysis of Intelbroker's Jenkins Exploitation
ID: a3821c38-a492-5e08-a819-9200ace128cb
STIX ID: report--a3821c38-a492-5e08-a819-9200ace128cb
Feed Name: CloudSEK Blog
Threat Score
This report details a supply-chain attack by the Intelbroker group that exploited CVE-2024-23897 against an exposed Jenkins server at BORN Group to steal SSH keys, access and dump GitHub repositories, and exfiltrate client data (claiming ~196,000 individuals affected); it includes IoCs, references to Endurance ransomware/wiper, affected customers, and remediation recommendations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
