• Tech News
  • Fintech
  • Startup
  • Games
  • Ar & Vr
  • Reviews
  • How To
  • More
    • Mobile Tech
    • Pc & Laptop
    • Security
What's Hot

Trump Officials Slam ICEBlock as It Tops iPhone App Charts

July 4, 2025

Is Your Mac Slowing Down? Here Are 8 Tips to Speed it Up

July 4, 2025

Angry Birds Bounce, Kingdom Rush, and More

July 4, 2025
Facebook Twitter Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook Twitter Instagram Pinterest VKontakte
Behind The ScreenBehind The Screen
  • Tech News
  • Fintech
  • Startup
  • Games
  • Ar & Vr
  • Reviews
  • How To
  • More
    • Mobile Tech
    • Pc & Laptop
    • Security
Behind The ScreenBehind The Screen
Home»Tech News»Cisco confirms leaked data was stolen in Yanluowang ransomware hit
Tech News

Cisco confirms leaked data was stolen in Yanluowang ransomware hit

September 14, 2022No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Consumers left out of pocket as security costs soar
Share
Facebook Twitter LinkedIn Pinterest Email

Inside Cisco information leaked late final week by the China-based Yanluowang ransomware operation has been confirmed as stolen throughout a cyber assault earlier in 2022, however has insisted the leak poses no danger to its enterprise, provide chain operations or prospects.

The assault occurred in Could, however Cisco initially disclosed it on 10 August 2022 after its title appeared for the primary time on Yanluowang’s darkish net leak website.

On the time, it mentioned, the attacker was doubtless an preliminary entry dealer (IAB) with hyperlinks to a menace actor tracked as UNC2447, the Yanluowang crew, and the Lapsus$ group that attacked a number of tech companies at first of the 12 months.

They doubtless gained entry after efficiently phishing a Cisco worker who had saved their credentials of their private Google account.

In the end, the attacker exfiltrated the contents of a Field folder related to the compromised worker’s account, and worker authentication information from Energetic Listing.

In an replace delivered on 11 September, Cisco’s menace intelligence unit Talos mentioned: “On September 11, 2022, the unhealthy actors who beforehand printed an inventory of file names from this safety incident to the darkish net, posted the precise contents of the identical recordsdata to the identical location on the darkish net. The content material of those recordsdata match what we already recognized and disclosed. 

They continued: “Our earlier evaluation of this incident stays unchanged – we proceed to see no affect to our enterprise, together with Cisco services or products, delicate buyer information or delicate worker data, mental property, or provide chain operations.”

See also  Valve Corrects Steam Survey Data Revealing Latest VR Population Growth

In accordance with Bleeping Pc, nevertheless, the Yanluowang gang claims it has stolen 55GB of information together with labeled paperwork, technical data, and – critically – supply code, though that is unconfirmed.

Chris Hauk, client privateness champion at Pixel Privateness, commented: “Whereas that is undoubtedly a case of ‘We mentioned, they mentioned’, with regards to this information breach, Cisco prospects and workers ought to deal with this breach as if the unhealthy actors do have entry to the entire information they declare to have stolen.

“Meaning they need to be alert for phishing schemes utilizing the probably purloined information, whereas additionally policing their login data, ensuring they haven’t reused their passwords wherever.”

A comparative rarity on the cyber felony scene given the dominance of Russian-speaking ransomware gangs, Yanluowang was first recognized in late 2021 by Symantec’s Menace Hunter workforce, nevertheless, it appears to have been operational since not less than August 2021.

It seems to be mainly concerned about organisations working within the monetary sector, nevertheless it has additionally focused these specialising in consultancy, engineering, IT companies and manufacturing.

In accordance with Symantec, it makes use of plenty of ways, strategies and procedures (TTPs) which might be related to the Thieflock ransomware-as-a-service (RaaS) operation, probably suggesting the presence or affect of an affiliate.

In April 2022, researchers at Kaspersky had been in a position to crack the ransomware’s encryption after discovering a flaw in its RSA-1024 uneven encryption algorithm, and subsequently made a free decryptor obtainable for victims.

Source link

Cisco confirms data hit leaked ransomware stolen Yanluowang
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

UK Government Accuses Apple of Profiting from Stolen iPhones

June 7, 2025

Trump Plans to Hit Apple with 25% Tariff on All iPhones Made Outside of the US

May 24, 2025

This Building Located in Southern China Is ‘Stolen iPhone Central’

May 23, 2025

Hit and Run Suspect’s iPhone Calls the Police

May 7, 2025
Add A Comment

Comments are closed.

Editors Picks

RingConn Gen 2 review: Smart ring battery champ

September 23, 2024

Scars Above is a sci-fi space shooter with big Returnal energy

September 5, 2022

Focusrite Vocaster hands-on: Streamlined audio interfaces built for podcasters

June 26, 2022

The #1 Skill That VCs Should Have And Entrepreneurs Should Seek

November 14, 2022

Subscribe to Updates

Get the latest news and Updates from Behind The Scene about Tech, Startup and more.

Top Post

Trump Officials Slam ICEBlock as It Tops iPhone App Charts

Is Your Mac Slowing Down? Here Are 8 Tips to Speed it Up

Angry Birds Bounce, Kingdom Rush, and More

Behind The Screen
Facebook Twitter Instagram Pinterest Vimeo YouTube
  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2025 behindthescreen.fr - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.