Amazon Employee Data Breached in MOVEit Attack Fallout: Over 2.8 Million Records Leaked by Hackers

Amazon has confirmed an employee data breach following the massive MOVEit cyberattacks, after threat actor "Nam3L3ss" leaked over 2.8 million lines of employee data, including contact details and office locations, stolen through a third-party vendor. This attack is part of a larger breach that has impacted dozens of global companies through a vendor exploit.
- Breach Confirmation: Amazon verifies a leak of employee contact information, stolen through a third-party vendor affected in the May MOVEit attacks.
- Sensitive Data Protection: Amazon reports no sensitive data like Social Security numbers or financial details were exposed.
- Scope of Impact: The threat actor claims additional leaks involving companies like Lenovo, HP, Delta, and Metlife, totaling over 25 impacted organizations.
- Technique and Vulnerability: Clop ransomware gang exploited a zero-day vulnerability in MOVEit’s secure transfer platform, leading to extensive data exfiltration and subsequent leaks.
- Global Fallout: MOVEit breaches affected hundreds of organizations and millions of people worldwide, with ongoing consequences for corporate and government entities.
The Amazon breach underscores the risks associated with third-party vendor security and the ongoing repercussions of the MOVEit data theft campaign. As attackers leverage vulnerabilities in secure transfer solutions, businesses must prioritize resilient vendor management and proactive security to protect sensitive data.
Comment(s)
Categories
- Other (43)
- Ransomware (154)
- Events and News (27)
- Features (45)
- Security (485)
- Tips (79)
- Google (28)
- Achievements (11)
- Products (35)
- Activation (7)
- Dealers (1)
- Bank Phishing (50)
- Malware Alerts (230)
- Cyber Attack (297)
- Data Backup (13)
- Data Breach (125)
- Phishing (165)
- Securty Tips (2)
- Browser Hijack (19)
- Adware (15)
- Email And Password (71)
- Android Security (77)
- Knoweldgebase (38)
- Botnet (17)
- Updates (4)
- Alert (71)
- Hacking (70)
- Social Media (8)
- vulnerability (72)
- Hacker (38)
- Spyware (12)
- Windows (8)
- Microsoft (25)
- Uber (1)
- YouTube (1)
- Trojan (4)
- Website hacks (10)
- Paytm (1)
- Credit card scam (2)
- Telegram (3)
- RAT (8)
- Bug (3)
- Twitter (2)
- Facebook (8)
- Banking Trojan (9)
- Mozilla (2)
- COVID-19 (5)
- Instagram (3)
- NPAV Announcement (9)
- IoT Security (2)
- Deals and Offers (2)
- Cloud Security (12)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (3)
- WhatsApp (5)
- Amazon (2)
- DMart (1)
- Payment Risk (5)
- Occasion (3)
- firewall (3)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (39)
- Impersonation phishing (1)
- DDoS (7)
- Smishing (2)
- Whale (0)
- Whale phishing (4)
- WINRAR (2)
- ZIP (2)
- Fraud Protector (27)
Recent Posts
Archive
Tags
cybercrime
cybersecurity
cyber attack
phishing
phishing attacks
data breach
cyber threats
data theft
phishing attack
malware
android malware
credential theft
ransomware
cybersecurity threats
financial fraud
ransomeware
cyber fraud
social engineering
financial security
cyber security
#cybersecurity
data protection
cyberthreats
phishingattack
network security
cyber threat
identity theft
security vulnerabilities
cert-in
data stealing
ransomware attacks
cyber crime
phishing scam
online fraud
data security
ddos attack
cybersecurity awareness
critical vulnerability
india
phishing email
microsoft
digital safety
cyber attacks
twitter
ddos
cybercriminals
ransomware attack
trojan
malware attack
cyberattack