Threat Intelligence Brief
Curated summary with source attribution
Source: classactionlawyers.com
Threat Risk: High
Victim: Blank Rome LLP
Incident: Data breach caused by social engineering.
Impact: Unauthorized exposure of PII, SSNs, and financial data for over 57,000 individuals.
Attacker: Unidentified threat actor
Analysis: The incident highlights a critical failure in internal identity verification and access control. By impersonating IT staff, an attacker successfully tricked an employee into exfiltrating sensitive legal files to an unauthorized external Google Drive. This event underscores the ongoing risk of human-centric attacks targeting high-value legal data.
Recommendations: Implement strict multi-factor identity verification for all internal IT support requests; Restrict or monitor the upload of sensitive company data to unauthorized third-party cloud storage; Conduct targeted social engineering awareness training for employees with access to sensitive client files
Source: Class Action Lawyers
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source