« Sony PS5 with detachable disc drive rumoured for 2023 launch | Main | 'Elden Ring' to get a tabletop version »
Tuesday
Sep202022

Uber names hacking group behind recent cyberattack

Source: Uber

Uber's computer network was breached by a cyberattacker last Thursday. The company says it hacked into the account of an EXT contractor after possibly buying the employee's credentials from the dark web. The company blames hacking group Lapsus$, which used similar attacks to breach Microsoft, Cisco, Samsung, Nvidia, Okta and others in 2022. 

Uber believes the contractor's personal device was most likely infected with malware. Uber has online safety precautions for employee logins, but the contractor unknowingly accepted a verification notification that might have granted the attacker access, according to Uber. The hacker was then able to access several employee accounts and tools, like G-Suite and Slack.

The company confirmed the report last week, saying the hacker sent a message to a company-wide Slack channel and "reconfigured Uber's OpenDNS to display a graphic image to employees on some internal sites." In its post, Uber says no personal data was compromised, and services are back to normal and running smoothly. It is working with the FBI, the US Department of Justice, and "several leading digital forensics firms" on its ongoing investigation. 

Source

Reader Comments

There are no comments for this journal entry. To create a new comment, use the form below.

PostPost a New Comment

Enter your information below to add a new comment.

My response is on my own website »
Author Email (optional):
Author URL (optional):
Post:
 
Some HTML allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong>