Summary
Key Points:
- A hacker identified as “888” claims to have stolen 35 GB of source code, Azure credentials, and other sensitive data from Accenture, offering it for sale on a cybercrime forum.
- The breach potentially exposes critical assets such as RSA keys, SSH keys, and Azure access tokens, which could allow unauthorized access to client environments and systems.
- Accenture has confirmed the incident and stated that it has remediated the source of the breach, but has not provided details on the scope or impact on client data.
Technical Details: The stolen data reportedly includes source code, configuration files, and cloud credentials that could facilitate unauthorized access to client systems. The attacker shared evidence of cloning an Azure DevOps repository.
MITRE ATT&CK Techniques:
- T1078 - Valid Accounts (Defense Evasion)
- T1071.001 - Application Layer Protocol: Web Protocols (Command and Control)
IOCs Mentioned: None mentioned
Join the discussion — sign up to comment, upvote, and save articles.