#1 Trending Cybersecurity News & Magazine
Saturday, September 16, 2023
No Result
View All Result
The Cyber Express
  • MagazineDownload
  • Firewall Daily
    • All
    • Dark Web News
    • Data Breach News
    • Hacking News
    • Ransomware News
    • Vulnerabilities
    American Steel & Aluminum data breach

    American Steel & Aluminum Co. Faces Data Breach by Akira Ransomware Group

    Greater Manchester Police Cyber Attack

    Greater Manchester Police Cyber Attack Exposes Extent of Data Vulnerability

    Gerchik Trading Ecosystem data breach

    Gerchik Trading Ecosystem Faces Data Breach Risk: What You Need to Know

    MGM Resorts Cyber Attack

    MGM Resorts Cyber Attack: The Assault, Intrusion, and the ‘Unknown User’ Through the Hacker’s Lens

    DBGB Cyber Attack

    Indian Banks Under Attack: Hackers Target Dakshin Bihar Gramin Bank, City Union Bank

    Mom's Meals data breach

    Mom’s Meals Data Breach Sparks Legal Battle as 1.2 Million Affected

    MetaStealer

    MetaStealer: A Stealthy Threat Targeting macOS Users, Impersonating Adobe and TradingView

    Caesars ransomware attack

    Cyber Attacks Target Caesars Palace and MGM – Who’s Next?

    AT HOP Cyber Attack

    Massive Cyber Attack Hits Auckland’s AT HOP Smart Card System, Services Disrupted

    Trending Tags

    • blackbyte ransomware
    • Ransomware
    • lapsus$ ransomware
    • Apple
    • Apple vulnerability
  • Essentials
    • All
    • Compliance
    • Governance
    • Policy Updates
    • Regulations
    Mandatory Dark Web Monitoring for Indian Companies: SEBI Bolsters Cybersecurity Measures

    Mandatory Dark Web Monitoring for Indian Companies: SEBI Bolsters Cybersecurity Measures

    Tesla Data Leak

    Massive Tesla Data Leak Exposing Over 75000 Staff Attributed to Former Employees

    Cybersecurity Primer

    Bridging the Gap: Cybersecurity Primer to Address Woes Surrounding US Government Officials

    Executive order for cybersecurity

    White House Directs Federal Agencies to Enhance Cybersecurity Amid Exposure Concerns

    AI Cyber Challenge

    Biden-Harris Administration Introduces AI Cyber Challenge, Offering $20 Million Reward

    aws agent hijack

    New Research Exposes Advanced Cyber Threat – Attackers Hijack AWS Agent to Control Endpoints

    HUB cyber security

    Investors Sue HUB Cyber Security for Misleading Statements on Mount Rainier Merger

    National Cyber Workforce and Education Strategy

    Everything You Need to Know About the National Cyber Workforce and Education Strategy (NCWES)

    Montclair cyber attack

    Montclair Cyber Attack Kicks Up the Ransom Payment Dilemma

    • Regulations
    • Compliance
    • Governance
    • Policy Updates
  • Features
    • Cyber Warfare
    • Espionage
    • Workforce
      • Learning & Development
  • Business
    • All
    • Appointments
    • Budgets
    • Mergers & Aquisitions
    • Partnerships
    • Press Release
    • Startups
    Emerging Tech Summit

    The Emerging Tech Summit – Saudi Arabia 2023

    Business Cybersecurity

    Prioritizing Business Cybersecurity Plans During Mergers and Acquisitions

    TimeAI Summit

    TimeAI Summit is Uniting Tech Giants and Visionaries in Dubai to Shape the Future of AI

    CyberDSA 2023

    CyberDSA 2023: Forging a Resilient Digital Future Through Unprecedented Collaboration

    Summit MENA 2023

    MENA Summit 2023: Exploring the Future of Digital Identity & Authentication

    Cyble Raises 24 Million in Series B Funding

    Cyble Raises 24 Million in Series B Funding: Leveraging AI and Threat Intelligence to Revolutionize Cybersecurity

    Alarming 66% Quarterly Growth in Ransomware Attacks Notes Cyble’s Q2-2023 Ransomware Report

    Alarming 66% Quarterly Growth in Ransomware Attacks Notes Cyble’s Q2-2023 Ransomware Report

    Bureau Raises $16.5M in Series A Funding

    Bureau Raises $16.5M in Series A Funding to Drive Global Expansion and Combat Cyber Fraud

    Cyble Partner Network

    Cyble Revolutionizes Cybersecurity Collaboration With Launch of Global Partner Program ‘Cyble Partner Network’

    • Startups
    • Mergers & Aquisitions
    • Partnerships
    • Appointments
    • Budgets
    • Research
      • Whitepapers
      • Sponsored Content
      • Market Reports
    • Interviews
      • Podcast
  • EventsCyberCon
    •  Cyber Security Webinar
    • Endorsed Events
  • ProductsTools
    • Cyble Vision
    • Cyble Hawk (LEA, Govt.)
    • Am I Breached
    • Cyble Odin (Beta)
SUBSCRIBE
  • MagazineDownload
  • Firewall Daily
    • All
    • Dark Web News
    • Data Breach News
    • Hacking News
    • Ransomware News
    • Vulnerabilities
    American Steel & Aluminum data breach

    American Steel & Aluminum Co. Faces Data Breach by Akira Ransomware Group

    Greater Manchester Police Cyber Attack

    Greater Manchester Police Cyber Attack Exposes Extent of Data Vulnerability

    Gerchik Trading Ecosystem data breach

    Gerchik Trading Ecosystem Faces Data Breach Risk: What You Need to Know

    MGM Resorts Cyber Attack

    MGM Resorts Cyber Attack: The Assault, Intrusion, and the ‘Unknown User’ Through the Hacker’s Lens

    DBGB Cyber Attack

    Indian Banks Under Attack: Hackers Target Dakshin Bihar Gramin Bank, City Union Bank

    Mom's Meals data breach

    Mom’s Meals Data Breach Sparks Legal Battle as 1.2 Million Affected

    MetaStealer

    MetaStealer: A Stealthy Threat Targeting macOS Users, Impersonating Adobe and TradingView

    Caesars ransomware attack

    Cyber Attacks Target Caesars Palace and MGM – Who’s Next?

    AT HOP Cyber Attack

    Massive Cyber Attack Hits Auckland’s AT HOP Smart Card System, Services Disrupted

    Trending Tags

    • blackbyte ransomware
    • Ransomware
    • lapsus$ ransomware
    • Apple
    • Apple vulnerability
  • Essentials
    • All
    • Compliance
    • Governance
    • Policy Updates
    • Regulations
    Mandatory Dark Web Monitoring for Indian Companies: SEBI Bolsters Cybersecurity Measures

    Mandatory Dark Web Monitoring for Indian Companies: SEBI Bolsters Cybersecurity Measures

    Tesla Data Leak

    Massive Tesla Data Leak Exposing Over 75000 Staff Attributed to Former Employees

    Cybersecurity Primer

    Bridging the Gap: Cybersecurity Primer to Address Woes Surrounding US Government Officials

    Executive order for cybersecurity

    White House Directs Federal Agencies to Enhance Cybersecurity Amid Exposure Concerns

    AI Cyber Challenge

    Biden-Harris Administration Introduces AI Cyber Challenge, Offering $20 Million Reward

    aws agent hijack

    New Research Exposes Advanced Cyber Threat – Attackers Hijack AWS Agent to Control Endpoints

    HUB cyber security

    Investors Sue HUB Cyber Security for Misleading Statements on Mount Rainier Merger

    National Cyber Workforce and Education Strategy

    Everything You Need to Know About the National Cyber Workforce and Education Strategy (NCWES)

    Montclair cyber attack

    Montclair Cyber Attack Kicks Up the Ransom Payment Dilemma

    • Regulations
    • Compliance
    • Governance
    • Policy Updates
  • Features
    • Cyber Warfare
    • Espionage
    • Workforce
      • Learning & Development
  • Business
    • All
    • Appointments
    • Budgets
    • Mergers & Aquisitions
    • Partnerships
    • Press Release
    • Startups
    Emerging Tech Summit

    The Emerging Tech Summit – Saudi Arabia 2023

    Business Cybersecurity

    Prioritizing Business Cybersecurity Plans During Mergers and Acquisitions

    TimeAI Summit

    TimeAI Summit is Uniting Tech Giants and Visionaries in Dubai to Shape the Future of AI

    CyberDSA 2023

    CyberDSA 2023: Forging a Resilient Digital Future Through Unprecedented Collaboration

    Summit MENA 2023

    MENA Summit 2023: Exploring the Future of Digital Identity & Authentication

    Cyble Raises 24 Million in Series B Funding

    Cyble Raises 24 Million in Series B Funding: Leveraging AI and Threat Intelligence to Revolutionize Cybersecurity

    Alarming 66% Quarterly Growth in Ransomware Attacks Notes Cyble’s Q2-2023 Ransomware Report

    Alarming 66% Quarterly Growth in Ransomware Attacks Notes Cyble’s Q2-2023 Ransomware Report

    Bureau Raises $16.5M in Series A Funding

    Bureau Raises $16.5M in Series A Funding to Drive Global Expansion and Combat Cyber Fraud

    Cyble Partner Network

    Cyble Revolutionizes Cybersecurity Collaboration With Launch of Global Partner Program ‘Cyble Partner Network’

    • Startups
    • Mergers & Aquisitions
    • Partnerships
    • Appointments
    • Budgets
    • Research
      • Whitepapers
      • Sponsored Content
      • Market Reports
    • Interviews
      • Podcast
  • EventsCyberCon
    •  Cyber Security Webinar
    • Endorsed Events
  • ProductsTools
    • Cyble Vision
    • Cyble Hawk (LEA, Govt.)
    • Am I Breached
    • Cyble Odin (Beta)
No Result
View All Result
The Cyber Express
No Result
View All Result
Home Firewall Daily Data Breach News

Airbus Cyber Attack: Work of ‘USDoD’ Hacker, Linked to Turkish Airlines Employee Account Hack

A hacker called USDoD claimed the Airbus cyber attack, citing access via a Turkish Airlines employee account.

Vishwa Pandagle by Vishwa Pandagle
September 12, 2023
in Data Breach News, Firewall Daily
0
Airbus Cyber Attack
951
SHARES
5.3k
VIEWS
Share on LinkedInShare on Twitter

Data allegedly from the Aviation and Aerospace Component manufacturing leader, Airbus, was leaked on the dark web. A hacker going by the name USDoD posted samples of data they stole from the Airbus cyber attack.

The compromised information includes details from Airbus vendors, such as names, addresses, phone numbers, and more, which were publicly posted on a hacker forum.

You might also like

American Steel & Aluminum Co. Faces Data Breach by Akira Ransomware Group

Greater Manchester Police Cyber Attack Exposes Extent of Data Vulnerability

Gerchik Trading Ecosystem Faces Data Breach Risk: What You Need to Know

Airbus, the European multinational aerospace corporation, is known for the manufacturing of commercial aircraft with separate divisions for defence, security, and space products and services.

The Cyber Express reached out to Airbus via email to inquire about the data breach involving their clients.

In response to the inquiries, a Media Relations Manager at Airbus issued the following statement:

“We are investigating information concerning a cyber event involving Airbus. As a major high-tech and industrial player, Airbus is also a target for malicious actors.”

“Airbus takes cybersecurity seriously and continuously monitors activities on its IT systems, has solid protection tools, skilled cyber experts, and associated processes to protect the company by taking immediate & appropriate measures as and when needed. The event is under investigation so we cannot comment further at this stage.”

Details About the Airbus Cyber Attack

Alon Gal, Chief Technology Officer at cybercrime firm Hudson Rock, first posted about the Airbus data leak. The hacker allegedly has access to 3,200 Airbus vendor data, he stated.

Airbus cyber attack
Screenshot of the Breach Forum post by USDoD (Photo: Alon Gal/ LinkedIn)

Giving a glimpse of the previous acts of the hacker behind the Airbus cyber attack, Alon wrote, “Hacker Behind FBI Hack Leaks Sensitive Airbus Database (And how it was avoidable).”

The hacker, who is also a member of the breached forum, known as USDoD, claimed that they obtained access to the Airbus website by exploiting an employee’s access credentials.

When The Cyber Express inquired about how to prevent the account compromise, Alon said, “Monitoring for info-stealer infections is a critical aspect of preventing data breaches like the one experienced by Airbus.”

“By establishing a dedicated team or using a third-party service for continuous monitoring, companies can proactively seek out signs of info-stealer infections,” he added.

Airbus cyber attack
Leaked samples from the Airbus cyber attack (Photo: Alon Gal/ LinkedIn)

That employee was from a Turkish airline, whose account was further misused by USDoD to hack several Airbus client accounts. USDoD managed to access the following data through a series of account hacks that began with the Turkish airline employee account:

  1. Coverage area
  2. Department
  3. First and last name
  4. Job title
  5. Address
  6. Phone
  7. Fax
  8. Email

The hacker posted their profile link below the leaked sample data from the Airbus cyber attack. Following this, they made a mention of their next hack victim – ‘Lockheed Martin, Raytheon, and the entire defense contractors.’

Airbus Data Breach: Gaining Access Through an Employee Account

“USDoD reveals how they gained access to the data by accessing the Airbus credentials of a Turkish Airlines employee,” Alon noted in his LinkedIn post addressing the Airbus cyber attack.

“It’s worth noting that threat actors typically refrain from revealing their intrusion techniques, making this disclosure exceedingly rare,” he further explained.

Alon conducted a thorough investigation into the claims, leading to groundbreaking results. He examined the found data through services offered on the Hudson Rock Computer and Network Security platform as part of his research.

Airbus cyber attack
Scanning of evidence on Hudson Rock (Photo: Alon Gal/ LinkedIn)

He found that a Turkish Airlines employee account was found to have given third-party access to Airbus systems. The employee was using the thy.com domain. This access was nearly the same time frame of the Airbus cyber attack making way to believe that this was the account used to hack Airbus vendors.

Moreover, Alon found that the employee account suffered an attack by an infostealer.

“The victim likely attempted to download a pirated version of the Microsoft .NET framework, as indicated in the malware path. Consequently, they fell victim to a threat actor utilizing the commonly employed RedLine info-stealing family,” stated the Hudson Rock blog.

Previous Attack by USDoD the Hacker

Airbus cyber attack
Post by USDoD about the InfraGard cyber attack (Photo: Brian Kreb’s blog)

The hacker was found claiming another hack on the hacker forum as shown in the screenshot of the forum above. Cybersecurity researcher Brian Krebs posted the above screenshot from the hacker forum.

USDoD claimed the InfraGard cyber attack. InfraGard is a non-profit organization that works with the Federal Bureau of Investigation and members of the private sector to effectively maintain the sharing of intelligence and data.

Brian initiated contact with USDoD in an attempt to gather further details regarding the 2022 InfraGard data leak. Surprisingly, the hacker responded by revealing that they had accessed InfraGard systems by submitting an account application in the name of a Chief Executive Officer of a company.

They used all stolen data of the CEO including their name, Social Security Number, birthdate, and other personal information which increased their chances of looking legitimate to InfraGard, which they did.

Airbus cyber attack
Post about USDoD joining Ransomed (Photo: Alon Gal/ LinkedIn)

USDoD also recently joined another ransomware group, Ransomed.

Media Disclaimer: This report is based on internal and external research obtained through various means. The information provided is for reference purposes only, and users bear full responsibility for their reliance on it. The Cyber Express assumes no liability for the accuracy or consequences of using this information.

Share this:

  • Click to share on LinkedIn (Opens in new window)
  • Click to share on Reddit (Opens in new window)
  • Click to share on Twitter (Opens in new window)
  • Click to share on Facebook (Opens in new window)
  • More
  • Click to email a link to a friend (Opens in new window)
  • Click to share on WhatsApp (Opens in new window)

Related

Tags: Airbus cyber attackAirbus data breachAirbus through Turkish AirlinesAlon GalFBI cyber attackHudson RoskInfraGard cyber attackRansomed hacker InfraGardThe Cyber ExpressThe Cyber Express NewsUSDoD hacker
Previous Post

The Least Preferred Cybersecurity Certifications: Market Trends Analysis by The Cyber Express

Next Post

Freecycle Data Breach: 7 Million Users at Risk, Company Urges Immediate Password Reset

Vishwa Pandagle

Vishwa Pandagle

Vishwa Pandagle is a Technical Writer at The Cyber Express. She writes cybersecurity news related to data breaches, ransomware, phishing, and best practices among others. She also writes about cybersecurity developments and likes interacting with experts in this field. When not working, she likes self-reflecting, meditating, volunteering, and going for long walks.

Related Posts

American Steel & Aluminum data breach
Firewall Daily

American Steel & Aluminum Co. Faces Data Breach by Akira Ransomware Group

by Ashish Khaitan
September 15, 2023
Greater Manchester Police Cyber Attack
Data Breach News

Greater Manchester Police Cyber Attack Exposes Extent of Data Vulnerability

by Ishita Tripathi
September 15, 2023
Gerchik Trading Ecosystem data breach
Firewall Daily

Gerchik Trading Ecosystem Faces Data Breach Risk: What You Need to Know

by Ashish Khaitan
September 15, 2023
MGM Resorts Cyber Attack
Firewall Daily

MGM Resorts Cyber Attack: The Assault, Intrusion, and the ‘Unknown User’ Through the Hacker’s Lens

by Vishwa Pandagle
September 15, 2023
DBGB Cyber Attack
Firewall Daily

Indian Banks Under Attack: Hackers Target Dakshin Bihar Gramin Bank, City Union Bank

by Vishwa Pandagle
September 14, 2023
Next Post
Freecycle Data Breach

Freecycle Data Breach: 7 Million Users at Risk, Company Urges Immediate Password Reset

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Latest Issue is Out. Subscribe Now



Follow Us On Google News

Latest Cyber News

American Steel & Aluminum data breach
Firewall Daily

American Steel & Aluminum Co. Faces Data Breach by Akira Ransomware Group

September 15, 2023
Greater Manchester Police Cyber Attack
Data Breach News

Greater Manchester Police Cyber Attack Exposes Extent of Data Vulnerability

September 15, 2023
Gerchik Trading Ecosystem data breach
Firewall Daily

Gerchik Trading Ecosystem Faces Data Breach Risk: What You Need to Know

September 15, 2023
MGM Resorts Cyber Attack
Firewall Daily

MGM Resorts Cyber Attack: The Assault, Intrusion, and the ‘Unknown User’ Through the Hacker’s Lens

September 15, 2023

Categories

Web Stories

Top 10 CISOs to Follow in 2023
Top 10 CISOs to Follow in 2023
Top 10 Ransomware Gangs in 2023
Top 10 Ransomware Gangs in 2023
Top 5 IoT Security Risks in 2023
Top 5 IoT Security Risks in 2023
Top 10 CTF Platforms in 2023
Top 10 CTF Platforms in 2023
Types of Risks Covered by Cyber Insurance
Types of Risks Covered by Cyber Insurance

About

The Cyber Express by Cyble

#1 Trending Cybersecurity News and Magazine

The Cyber Express  by Cyble is a handbook for all stakeholders of the internet that provides information security professionals with the latest news, updates and knowledge they need to combat cyber threats.

 

Contact

For editorial queries: [email protected]

For marketing and Sales: [email protected]

For Events & Conferences related information: [email protected]

 

Quick Links

  • About Us
  • Advertise With Us
  • Contact Us
  • Editorial Calendar

Our Address

We’re remote friendly, with office locations around the world:

San Francisco, Atlanta, Rome,
Dubai, Mumbai, Bangalore, Hyderabad,  Singapore, Jakarta, Sydney, and Melbourne

 

Headquarters:

The Cyber Express LLC
555 North Point Center E
Alpharetta, GA 30022, USA.

 

India Office:

Cyber Express Media Network
HD-021, 4th Floor, C Wing, Building No.4. Nesco IT Park, WE Highway, Goregaon East, Mumbai, Maharashtra, India – 4000063

Subscribe to Our Feed

RSS Feeds

Follow Us On Google News
  • Privacy Statement
  • Terms of Use
  • Write For Us

© 2023 The Cyber Express (Cybersecurity News and Magazine) | By Cyble Inc.

No Result
View All Result
  • Magazine
  • Firewall Daily
  • Essentials
    • Regulations
    • Compliance
    • Governance
    • Policy Updates
  • Features
    • Cyber Warfare
    • Espionage
    • Workforce
      • Learning & Development
  • Business
    • Startups
    • Mergers & Aquisitions
    • Partnerships
    • Appointments
    • Budgets
    • Research
      • Whitepapers
      • Sponsored Content
      • Market Reports
    • Interviews
      • Podcast
  • Events
    •  Cyber Security Webinar
    • Endorsed Events
  • Products
    • Cyble Vision
    • Cyble Hawk (LEA, Govt.)
    • Am I Breached
    • Cyble Odin (Beta)

© 2023 The Cyber Express (Cybersecurity News and Magazine) | By Cyble Inc.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
Top 10 CISOs to Follow in 2023 Top 10 Ransomware Gangs in 2023 Top 5 IoT Security Risks in 2023 Top 10 CTF Platforms in 2023 Types of Risks Covered by Cyber Insurance