Cloudflare Breach: Nation-State Hackers Access Source Code and Internal Docs
ID: dc220d53-f63f-5db0-9fa1-044698493e3c
STIX ID: report--dc220d53-f63f-5db0-9fa1-044698493e3c
Feed Name: The Hacker News
Cloudflare disclosed a likely nation-state intrusion in November 2023 where attackers leveraged stolen credentials (from an October Okta support-system breach) to access Atlassian Confluence/Jira and Bitbucket, viewing around 120 repositories and exfiltrating an estimated 76 repositories containing details on backups, network configuration, identity, remote access, Terraform and Kubernetes; Cloudflare rotated thousands of credentials, reimaged systems, and engaged CrowdStrike for independent assessment.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
