Data Breach
22 cases · page 2 of 2
Snowflake Data Theft Campaign (UNC5537): Mass Credential Stuffing Across 165+ OrganizationsData BreachExtortion & Blackmail
A financially motivated threat actor (UNC5537) compromised Snowflake customer instances across 165+ organizations by credential stuffing against accounts lacking MFA, exfiltrating terabytes of sensitive data, and conducting mass extortion — the largest cloud data warehouse compromise to date.
Data BreachExtortion & Blackmail
Midnight Blizzard (APT29): Russian State-Sponsored Breach of Microsoft Corporate SystemsState-SponsoredData Breach
Russian state-sponsored group Midnight Blizzard (APT29) breached Microsoft's corporate environment via password spray against a legacy non-production test tenant, accessed executive and security team email, and exfiltrated OAuth tokens and source code — demonstrating sophisticated identity-based tradecraft without malware.
State-SponsoredData Breach