Amazon Employee Data Breached in MOVEit Attack Fallout: Over 2.8 Million Records Leaked by Hackers

Amazon has confirmed an employee data breach following the massive MOVEit cyberattacks, after threat actor "Nam3L3ss" leaked over 2.8 million lines of employee data, including contact details and office locations, stolen through a third-party vendor. This attack is part of a larger breach that has impacted dozens of global companies through a vendor exploit.
- Breach Confirmation: Amazon verifies a leak of employee contact information, stolen through a third-party vendor affected in the May MOVEit attacks.
- Sensitive Data Protection: Amazon reports no sensitive data like Social Security numbers or financial details were exposed.
- Scope of Impact: The threat actor claims additional leaks involving companies like Lenovo, HP, Delta, and Metlife, totaling over 25 impacted organizations.
- Technique and Vulnerability: Clop ransomware gang exploited a zero-day vulnerability in MOVEit’s secure transfer platform, leading to extensive data exfiltration and subsequent leaks.
- Global Fallout: MOVEit breaches affected hundreds of organizations and millions of people worldwide, with ongoing consequences for corporate and government entities.
The Amazon breach underscores the risks associated with third-party vendor security and the ongoing repercussions of the MOVEit data theft campaign. As attackers leverage vulnerabilities in secure transfer solutions, businesses must prioritize resilient vendor management and proactive security to protect sensitive data.
Comment(s)
Categories
- Other (42)
- Ransomware (148)
- Events and News (27)
- Features (45)
- Security (473)
- Tips (79)
- Google (23)
- Achievements (11)
- Products (34)
- Activation (7)
- Dealers (1)
- Bank Phishing (45)
- Malware Alerts (218)
- Cyber Attack (265)
- Data Backup (11)
- Data Breach (103)
- Phishing (159)
- Securty Tips (1)
- Browser Hijack (18)
- Adware (15)
- Email And Password (69)
- Android Security (71)
- Knoweldgebase (38)
- Botnet (15)
- Updates (3)
- Alert (71)
- Hacking (57)
- Social Media (8)
- vulnerability (57)
- Hacker (31)
- Spyware (9)
- Windows (6)
- Microsoft (21)
- Uber (1)
- YouTube (1)
- Trojan (2)
- Website hacks (5)
- Paytm (1)
- Credit card scam (1)
- Telegram (3)
- RAT (5)
- Bug (3)
- Twitter (2)
- Facebook (7)
- Banking Trojan (7)
- Mozilla (2)
- COVID-19 (5)
- Instagram (2)
- NPAV Announcement (9)
- IoT Security (1)
- Deals and Offers (2)
- Cloud Security (12)
- Offers (5)
- Gaming (1)
- FireFox (2)
- LinkedIn (2)
- WhatsApp (5)
- Amazon (2)
- DMart (1)
- Payment Risk (4)
- Occasion (3)
- firewall (2)
- Cloud malware (2)
- Cloud storage (2)
- Financial fraud (12)
- Impersonation phishing (1)
- DDoS (6)
- Smishing (2)
- Whale (0)
- Whale phishing (4)
- WINRAR (2)
- ZIP (2)
Recent Posts
Archive
Tags
cyber attack
phishing
phishing attacks
data breach
cyber threats
ransomware
ransomeware
phishing attack
malware
android malware
data theft
cyberthreats
cyber security
credential theft
financial security
phishingattack
cybercrime
data stealing
phishing scam
network security
ddos attack
data security
critical vulnerability
net protector total security
trojan
cert-in
financial fraud
phishing email
microsoft
lockbit
cybercriminals
cyberattack
cyber crime
ddos
cyber threat
data protection
india
twitter
cyber fraud
clop
ransomware attacks
server security
malicious apps
android apps
credit card theft
play store
databreach
pakistan-backed hacker
winrar
email phishing