ShinyHunters claims Ernst & Young data breach via supply-chain

The ShinyHunters extortion gang claimed responsibility for Ernst & Young's data breach, stating they obtained credentials through a supply-chain attack via a compromised third party. Attackers gained access to EY's Jira, GitHub, and Azure environments.

6 reportsother · tech

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attac

mastodon:infosec-exchangeother64d ago kagi ↗

The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attack. https://www. bleepingcomputer.com/news/secu rity/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/

🤖 ShinyHunters extortion gang claims EY data breach via supply-chain attack. Credentials obtained from a compromised third party allegedly gave access to EY's Jira, GitHub, and Azure environments. EY

mastodon:infosec-exchangeother64d ago kagi ↗

🤖 ShinyHunters extortion gang claims EY data breach via supply-chain attack. Credentials obtained from a compromised third party allegedly gave access to EY's Jira, GitHub, and Azure environments. EY disclosed client tax data theft from a support ticket system. Ransom deadline: July 31. 🔗 https://www. bleepingcomputer.com/news/secu rity/ernst-and-young-data-breach-claimed-by-shinyhunters-extorti

ShinyHunters has claimed responsibility for Ernst & Young's recent data breach, alleging it used a supply-chain attack to steal credentials and access EY's Jira, GitHub, and Azure environments. EY has

mastodon:infosec-exchangeother64d ago kagi ↗

ShinyHunters has claimed responsibility for Ernst & Young's recent data breach, alleging it used a supply-chain attack to steal credentials and access EY's Jira, GitHub, and Azure environments. EY has not confirmed the claims, but says attackers stole tax-related support ticket data and is offering affected clients 24 months of identity monitoring. # databreach https://www. bleepingcomputer.com/ne

🤖 Ernst & Young data breach claimed by ShinyHunters extortion gang. The group says it obtained credentials via a supply-chain attack (third-party access). EY, a Big 4 accounting firm, confirmed a bre

mastodon:infosec-exchangeother63d ago kagi ↗

🤖 Ernst & Young data breach claimed by ShinyHunters extortion gang. The group says it obtained credentials via a supply-chain attack (third-party access). EY, a Big 4 accounting firm, confirmed a breach but hasn't attributed it publicly. 🔗 https://www. bleepingcomputer.com/news/secu rity/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/ # DataBreach # InfoSec # CyberSec