logo

Red Hat Consulting breach puts over 5000 high profile enterprise customers at risk — in detail

ID: 027aee08-6744-557a-9d08-d1d4bb377f4d

STIX ID: report--027aee08-6744-557a-9d08-d1d4bb377f4d

Feed Name: DoublePulsar

Threat Score
85/100

Date Published: 2025-10-06

Date Updated: 2026-04-19

Author: Kevin Beaumont

...
...

The report describes a purported LAPSUS$-linked compromise of Red Hat Consulting on 13 September 2025, claiming massive data exfiltration (tens of millions of files and hundreds of thousands of directories) and sample disclosures that include sensitive items such as private .pfx certificates. The leak reportedly impacts thousands of enterprise customers, contains Consultancy Engagement Reports and source code, and appears to be tied to extortion and active trading of stolen files online.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.