Massive Azure Breach Hits McDonald’s, Vodafone, TCS and More
Article excerpt
Highlighted: the sentence this signal was extracted from
A threat actor known as TheHatman is selling internal employee directories allegedly exfiltrated from the Azure and Entra tenants of McDonald's, Vodafone, and seven other Fortune 500 companies, cybersecurity firm Hudson Rock reported this week. The McDonald's dataset alone totals more than 1.7 million records. TheHatman began flooding cybercrime forums with the directories over the past week, targeting nine companies across IT services, hospitality, telecommunications, retail, and logistics. Cybersecurity firm Hudson Rock reviewed the samples and found the corporate email addresses and field names match standard Azure directory exports. The seller says every dataset was downloaded straight from the victims' Azure and Entra tenants using stolen credentials. A massive data breach has exposed millions of records from Fortune 500 companies, including McDonald's and Vodafone, due to compromised Azure credentials. This incident underscores the critical need for robust credential management, multi-factor authentication, and vigilant… pic.twitter.com/EQkPatzvYA McDonald's tops the list by a wide margin. The full breakdown across all nine companies follows: TheHatman has not described the exact intrusion method beyond citing compromised credentials, and Hudson Rock calls the vector inconclusive. The access could trace to Infostealer malware harvesting session tokens, a successful...
Keep reading with a free account
The rest of this article, and every signal for Vodafone, is in your free account.
