The ShinyHunters extortion gang claimed responsibility for Ernst & Young's data breach, stating they obtained credentials through a supply-chain attack via a compromised third party. Attackers gained access to EY's Jira, GitHub, and Azure environments.
6 reportsother · tech
Claim audit
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attack. [...]
The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attack. https://www. bleepingcomputer.com/news/secu rity/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/
Ernst & Young data breach claimed by ShinyHunters extortion gang https://www. bleepingcomputer.com/news/secu rity/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/?utm_source=dlvr.it&utm_medium=%5Binfosec.exchange%5D
🤖 ShinyHunters extortion gang claims EY data breach via supply-chain attack. Credentials obtained from a compromised third party allegedly gave access to EY's Jira, GitHub, and Azure environments. EY disclosed client tax data theft from a support ticket system. Ransom deadline: July 31. 🔗 https://www. bleepingcomputer.com/news/secu rity/ernst-and-young-data-breach-claimed-by-shinyhunters-extorti
ShinyHunters has claimed responsibility for Ernst & Young's recent data breach, alleging it used a supply-chain attack to steal credentials and access EY's Jira, GitHub, and Azure environments. EY has not confirmed the claims, but says attackers stole tax-related support ticket data and is offering affected clients 24 months of identity monitoring. # databreach https://www. bleepingcomputer.com/ne
🤖 Ernst & Young data breach claimed by ShinyHunters extortion gang. The group says it obtained credentials via a supply-chain attack (third-party access). EY, a Big 4 accounting firm, confirmed a breach but hasn't attributed it publicly. 🔗 https://www. bleepingcomputer.com/news/secu rity/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/ # DataBreach # InfoSec # CyberSec