Plane-maker Bombardier discloses breach after stolen data surfaces
Full article541 words · extracted from cyberscoop.com · click to collapse
Get our latest cybersecurity news first on Google.
The Bombardier announcement seems to reference the Accellion hack, a sprawling incident affecting firms in the U.S. and Canada.
Hackers have exposed data about employees, customers and suppliers of Bombardier, a Canadian plane manufacturer, in what appears to be the latest ripple effect from a larger security incident humming through the private sector in North America.
A forensic analysis revealed that “confidential” information originating at Bombardier was stolen in a recent incident, the company said Tuesday. The Montreal-based Bombardier, which reported $16 billion in revenue in 2018, did not specify exactly what happened or when, though it did say the breach was the result of a “vulnerability affecting a third-party file-transfer application.”
“The ongoing investigation indicates that the unauthorized access was limited solely to data stored on the specific servers,” the company said. “Manufacturing and customer support operations have not been impacted or interrupted.”
The Bombardier news appears to be a reference to Accellion, an IT services provider victimized last year in an incident that is continuing to have consequences for the company’s clients. A hacking group identified only as UNC2546 leveraged software flaws in an Accellion product to gather data about partners including the grocery chain Kroger, the global law firm Jones Day, the University of Colorado and a telecommunications firm in Singapore, among others.
In many cases, the thieves have tried to extort the victim organizations by posting some of the stolen data on a publicly accessible website, then threatening to publish more in the event that a firm did not pay the attackers to keep quiet. Some intellectual property belonging to Bombardier appears to be available on the website in question, multiple media outlets have reported.
The list of victims is only poised to grow. Of the roughly 300 corporate firms that rely on the Accellion tool in question, known as a secure file transfer application, fewer than 100 companies were attacked and roughly 25 have been affected by a significant theft of data, Accellion said Tuesday.
Latest Podcasts
Government
FBI officials say AI is bolstering adversaries, emphasizing need to focus on cyber basics, patching
Feds accuse China of ‘systematic’ distillation of U.S. AI models
CIA’s Michael Ellis says cyber intelligence is changing how the agency operates
Jail time for Maine child in 764 marks turning point in federal law enforcement
Technology
Threats
Chinese espionage groups swarm to exploit triple-link chain of zero-days
Microsoft discloses two actively exploited zero-days among 974 vulnerabilities
Russian national extradited to US for alleged involvement in bank-account takeover scheme
Attackers exploit zero-days in consistently besieged SonicWall product
Policy
Whistleblower says USPS deploying new, ‘untested’ IT systems governing mail-in ballots
‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
Former sexual abuse victims say Grok used their images, videos to train deepfake capabilities
Cyber threats nudge Trump to sign executive order on foreign equipment in U.S. energy infrastructure
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyberscoop.com/bombardier-breach-accellion-unc2546/