Amazon has confirmed that it was impacted by the MOVEit third party breach that took place in 2023, and that a large amount of employee data was included with a massive trove that was offered for sale on a hacking forum.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Amazon Key is still in the early stages yet there are so many questions of hacking, insurance risks and liability if problems were to occur during delivery.
Researchers discovered thousands of Amazon RDS snapshots shared publicly either accidentally or deliberately that were inadvertently leaking clients’ personally identifiable information (PII).
Payment processor Juspay downplayed the data breach affecting 100 million customers, failed to notify them for five months until a researcher found the data selling on the dark web.
Amazon’s Whole Foods distributor, United Natural Foods Inc. (UNFI), suffered a cyber attack that forced the company to shut down some IT systems, disrupting operations, including ordering and distribution.
Medical companies affected by AMCA healthcare data breach have begun alerting investors and shareholders which may cause them to lose tens of millions of dollars in stock market valuation.
AMD said it was investigating a data breach by the RansomHouse cyber extortion group claiming to have stolen 450 GB of data by exploiting weak passwords used by the chipmaker's employees.
Hackers gained access to sensitive personal information of American Airlines’ customers and employees in a data breach linked to a phishing campaign that led to the unauthorized access of employee mailboxes.
American automaker Ford is investigated a data breach affecting 44,000 customers after prolific threat actor IntelBroker published the stolen data on a dark web hacking forum.
U.S. legal professional organization, the American Bar Association (ABA), has notified over 1.4 million members that a recent data breach exposed user credentials.










