Hackers demand “8 figure” ransom from Western Digital

Share post:

A data breach has occurred at Western Digital, with hackers claiming to have taken around 10 gigabytes of client information. In return for not exposing the stolen material, the hackers have demanded a “minimum 8 figures” ransom.

Western Digital disclosed a security issue in which hackers stole data from many of the company’s servers on April 3. However, the business did not reveal what data was taken, stating that the extent and nature of the incident were still being investigated.

Since then, one of the hackers has spoken with TechCrunch and supplied further material to back up their allegations. The hacker distributed a digitally signed file that was signed using Western Digital’s code-signing certificate, demonstrating that they can sign files to impersonate the firm. Two security experts confirmed that the file was signed using a certificate issued by Western Digital.

The hackers also reportedly gave phone numbers for many Western Digital officials, as well as images of different documents, including emails, files, and a snapshot of a group conversation. The hacker claimed that they took data from the company’s SAP Backoffice and gained global administrator access to Western Digital’s Microsoft Azure tenant by exploiting infrastructure flaws.

A representative from Western Digital declined to comment or respond to queries concerning the hacker’s allegations, including the quantity of data taken, whether it included client data, and whether the firm had established contact with the hackers.

The sources for this piece include an article in TechCrunch.

SUBSCRIBE NOW

Related articles

Sleeper Supply Chain Attack Activates After 6 Years

A coordinated supply chain attack has compromised between 500 and 1,000 e-commerce websites by exploiting vulnerabilities in 21...

Russian-Controlled Open Source Tool Raises Alarms Over U.S. Cybersecurity

A widely used open-source Go library, easyjson, used in healthcare, finance and even defence has come under scrutiny...

Signal Archiving Tool Used By Trump Admin Is Breached, Raising Alarms Over Messaging Security (EDITORIAL)

(EDITORIAL) A messaging tool used by Trump administration officials to archive encrypted Signal messages has been hacked —...

Anthropic Warns: AI “Virtual Employees” Could Pose Security Risks Within a Year

Anthropic, a leading artificial intelligence company, anticipates that AI-powered virtual employees could begin operating within corporate networks as...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways