Accused data thief threw MacBook into a river to destroy evidence


South Korean e-tailer Coupang claims a former employee has admitted to improperly accessing data describing 33 million of its customers, but says the accused deleted the stolen data. In a post published on Christmas, Coupang revealed it worked with Mandiant, Palo Alto Networks, and Ernst & Young, to conduct a forensic investigation into the incident, and has also secured sworn statements from the alleged perpetrator.

The investigation and testimony mean Coupang believes the perpetrator stole a security key while working at the company and later used it to access customer records.

Read more…
Source: The Register News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • Kimsuky’s GoldDragon cluster and its C2 operations

    August 25, 2022

    Kimsuky (also known as Thallium, Black Banshee and Velvet Chollima) is a prolific and active threat actor primarily targeting Korea-related entities. Like other sophisticated adversaries, this group also updates its tools very quickly. In early 2022, Kaspersky researchers observed this group was attacking the media and a think-tank in South Korea and reported technical details ...

  • New GwisinLocker ransomware encrypts Windows and Linux ESXi servers

    August 6, 2022

    A new ransomware family called ‘GwisinLocker’ targets South Korean healthcare, industrial, and pharmaceutical companies with Windows and Linux encryptors, including support for encrypting VMware ESXi servers and virtual machines. The new malware is the product of a lesser-known threat actor dubbed Gwisin, which means “ghost” in Korean. The actor is of unknown origin but appears to ...

  • Roaming Mantis hits Android and iOS users in malware, phishing attacks

    July 19, 2022

    After hitting Germany, Taiwan, South Korea, Japan, the US, and the U.K. the Roaming Mantis operation moved to targeting Android and iOS users in France, likely compromising tens of thousands of devices. Roaming Mantis is believed to be a financially-motivated threat actor that started targeting European users in February. In a recently observed campaign, the threat actor ...

  • NATO Cooperative Cyber Defense Centre of Excellence (CCDCOE) held a flag-raising ceremony for Canada, the Republic of Korea and Luxembourg

    May 5, 2022

    NATO Cooperative Cyber Defense Centre of Excellence (CCDCOE) raised the flags of Canada, the Republic of Korea and Luxembourg to welcome the most recent members of CCDCOE’s multinational family. „It is a great honour to have Canada, Republic of Korea and Luxembourg in our growing and diverse family of like-minded nations. Each member of the CCDCOE ...

  • Suspected DarkHotel APT resurgence targets luxury Chinese hotels

    March 21, 2022

    A new wave of suspected activity conducted by the DarkHotel advanced persistent threat (APT) group has been disclosed by researchers. Last week, Trellix researchers Thibault Seret and John Fokker said that a malicious campaign has been targeting luxury hotels in Macao, China since November 2021, and based on clues in the attack vector and malware used, ...

  • Roaming Mantis reaches Europe

    February 7, 2022

    Roaming Mantis is a malicious campaign that targets Android devices and spreads mobile malware via smishing. Kaspersky researchers have been tracking Roaming Mantis since 2018, and they observed some new activities by Roaming Mantis in 2021, and some changes in the Android Trojan Wroba.g (or Wroba.o, a.k.a Moqhao, XLoader) that’s mainly used in this campaign. ...