CrowdStrike fires ‘suspicious insider’ who passed information to hackers


Cybersecurity giant CrowdStrike has confirmed firing a “suspicious insider” last month who allegedly fed information about the company to a notorious hacking group. A hacking collective known as Scattered Lapsus$ Hunters published screenshots late Thursday and Friday morning in a public Telegram channel that allegedly showed insider access to CrowdStrike systems.

The screenshots, which TechCrunch has seen, show dashboards containing links to company resources, including a user’s Okta dashboard used by employees for accessing internal apps.

Read more…
Source: TechCrunch News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • ​240,000 Homeland Security employees, case witnesses affected by data breach

    January 4, 2018

    The United States Department of Homeland Security (DHS) has confirmed the breach of the DHS Office of Inspector General (OIG) Case Management System (CMS), affecting approximately 247,167 individuals employed by DHS in 2014, as well as individuals including subjects, witnesses, and complainants associated with DHS OIG investigations from 2002 through 2014. DHS issued a statement on ...

  • NSA employee pleads guilty after stolen classified data landed in Russian hands

    December 1, 2017

    A former National Security Agency hacker has admitted to illegally taking highly classified information from the agency’s headquarters, which was later stolen by Russian hackers. Nghia Pho, 67, a Maryland resident who worked for the NSA’s Tailored Access Operations, the agency’s elite hacking unit, entered a guilty plea on Friday to charges of willful retention of ...

  • Your biggest threat is inside your organisation and probably didn’t mean it

    November 19, 2017

    It doesn’t have a super-sexy moniker like KRACK or Heartbleed, but the spectre of the insider threat looms large for organisations, and has done so for as long as electricity, silicon, and computing have been paired up to store information. While it’s easy to imagine a disgruntled, unhappy employee becoming a malicious actor within an organisation, and dumping the ...

  • For 11 minutes, Donald Trump’s Twitter ceased to exist

    November 3, 2017

    Donald Trump’s Twitter account was deactivated by a company employee and was down for 11 minutes before it was restored, Twitter said. Twitter blamed a customer-support employee “who did this on the employee’s last day”. The internet was seized by a brief spell of panic just before 11pm on Thursday, when the US President’s account disappeared suddenly ...