• Home
  • About
  • Contact Us
  • Privacy Policy

Technic News

The Latest in Technology

  • New Technology
  • Cool Gadgets
  • Latest Tech & Gadgets
  • Tech & Gadget Reviews
  • Tech & Gadget News
  • Gadgets Shop

Lapsus$ stole T-Mobile’s source code before member arrests in March

Before police arrested seven of the group’s more prolific members in late March, ransomware gang Lapsus$ stole T-Mobile’s source code that same month. In a report published Friday and spotted by The Verge, security journalist Brian Krebs shared screenshots of private Telegram messages that show the group targeted the carrier multiple times.

“Several weeks ago, our monitoring tools detected a bad actor using stolen credentials to access internal systems that house operational tools software,” T-Mobile told Krebs. “Our systems and processes worked as designed, the intrusion was rapidly shut down and closed off, and the compromised credentials used were rendered obsolete.” The company added the “systems accessed contained no customer or government information or other similarly sensitive information.”

Lapsus$ initially accessed T-Mobile’s internal tools by buying stolen employee credentials on websites like Russian Market. The group then carried out a series of SIM swap attacks. Those type of intrusions typically involve a hacker hijacking their target’s mobile phone by transferring the number to a device in their possession. The attacker can then use that access to intercept SMS messages, including links to password resets and one-time codes for multi-factor authentication. Some Lapsus$ members attempted to use their access to hack into T-Mobile accounts associated with the FBI and Department of Defense but failed to do so due to the additional verification measures tied to those accounts.

Hackers have frequently targeted T-Mobile in recent years. Last August, the company confirmed it had fallen victim to a hack that saw the personal data of more than 54 million of its customers compromised. That breach also involved SIM swap attacks and may have even seen the carrier secretly pay a third-party firm to limit the damage.

Brought to you by USA Today Read the rest of the article here.

  • Facebook
  • Twitter
  • Pinterest

Filed Under: Tech & Gadget News

  • Email
  • Facebook
  • YouTube

www.sicherversichert.de

www.service-hotel-24.com

www.virtutea.com

www.my-fly.club 

www.1-2-holiday.com

www.women-fashion-online.com

www.amer.de

www.cupado.de

Recent Posts

  • Microsoft reportedly censors searches for politically sensitive Chinese personalities May 20, 2022
  • FTC warns edtech companies to not use children’s data for commercial purposes like ads without parental consent, saying it will “vigilantly enforce” COPPA (Tonya Riley/CyberScoop) May 19, 2022
  • A Meta executive told employees to stop discussing abortion on Workplace, citing “an increased risk” that the company is seen as a “hostile work environment” (Alex Heath/The Verge) May 19, 2022
  • AdvIntel: the Conti ransomware group has taken its infrastructure offline and its leaders have partnered with other smaller ransomware groups to conduct attacks (Lawrence Abrams/BleepingComputer) May 19, 2022
  • Disney+ is working on a ‘Daredevil’ series May 19, 2022

Copyright © 2022 · Designed by Amaraq Websites

We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
Cookie settingsACCEPT
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled

Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.

Non-necessary

Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.