Threat Intelligence Brief
Curated summary with source attribution
Source: classaction.org
Threat Risk: High
Victim: Data Exchange Corporation (DEX)
Incident: Alleged data breach and exfiltration of 600GB of sensitive information.
Impact: Potential exposure of PII for over 12 million individuals, including SSNs and government IDs.
Attacker: Payout Kings
Analysis: The ransomware group Payout Kings claims to have exfiltrated 600GB of sensitive data from DEX. Evidence suggests over 12 million records containing SSNs and driver’s licenses were leaked to the dark web. While the company has not officially confirmed the incident, the availability of a searchable database of the stolen data indicates a high likelihood of a successful compromise.
Recommendations: Implement strict data minimization to reduce the volume of stored PII; Deploy advanced endpoint detection and response (EDR) to identify ransomware activity; Establish a formal dark web monitoring program to detect leaked corporate credentials
Source: ClassAction.org
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source