Threat Intelligence Brief
Curated summary with source attribution
Source: teiss.co.uk
Threat Risk: High
Victim: Global IT services and consulting firms
Incident: Unauthorized network infiltration and data exfiltration.
Impact: Potential exposure of sensitive personal information belonging to Cognizant’s clients.
Attacker: CoinbaseCartel
Analysis: The incident involved an infiltration of Cognizant’s US internal network, resulting in the exfiltration of confidential client data. The attack is attributed to CoinbaseCartel, a financially motivated group specializing in data extortion without the use of encryption. This shift toward ‘leak-only’ tactics increases the risk of long-term data exposure and identity theft for impacted clients.
Recommendations: Implement strict network segmentation to limit lateral movement following internal network infiltration.; Enhance monitoring and alerting for unauthorized large-scale data exfiltration.; Strengthen access controls and auditing for repositories containing sensitive client personal information.
Source: Teiss
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source