Uber Freight reportedly investigating after hacking group claims data breach
Uber Freight reportedly investigating after hacking group claims data breach
据报道,Uber Freight 正在调查黑客组织声称的数据泄露事件
A hacking and extortion gang has taken credit for a cyberattack and data breach at Uber Freight, the ridesharing giant’s logistics subsidiary. A spokesperson for Uber Freight told Reuters, which first reported the incident, that there was no effect on its business operations and that its systems were running normally. (The company did not immediately respond to TechCrunch’s questions about the incident.)
一个黑客兼勒索团伙声称对网约车巨头 Uber 旗下的物流子公司 Uber Freight 发动了网络攻击并导致数据泄露。Uber Freight 的一位发言人向率先报道此事的路透社表示,此次事件未对其业务运营造成影响,系统运行正常。(该公司未立即回应 TechCrunch 就此事提出的置评请求。)
The shipping company is the latest victim in a spate of hacks in recent weeks conducted by the Helix hacking group, which has targeted transportation companies, financial giants, and private equity firms throughout the year. The hackers are known for targeting companies and exfiltrating large amounts of data from their cloud environments, which they then threaten to publish if the victim companies do not pay a ransom.
这家物流公司是黑客组织 Helix 近几周发动的一系列攻击中的最新受害者。该组织今年以来一直以运输公司、金融巨头和私募股权公司为目标。这些黑客以针对企业并从其云环境中窃取大量数据而闻名,如果受害公司不支付赎金,他们便威胁要公开这些数据。
In a post on its data leak site, which it uses to host the stolen files, the Helix hackers claim to have taken mailboxes, cloud storage drives, files relating to accounts payable, and dispatch documents from Uber Freight. Some of the files seen by TechCrunch appear to show email correspondence between Uber Freight and several of its customers. TechCrunch could not immediately verify the authenticity of the files, which appeared to be dated around mid-June.
在用于托管被盗文件的泄露网站上,Helix 黑客声称已从 Uber Freight 获取了邮箱、云存储驱动器、应付账款相关文件以及调度文档。TechCrunch 查看的部分文件似乎显示了 Uber Freight 与其几位客户之间的电子邮件往来。TechCrunch 无法立即核实这些文件的真实性,这些文件的日期似乎在 6 月中旬左右。
Uber Freight has not yet said if it received any correspondence from the hackers, or if it paid the hackers a ransom. Google said earlier this week that the Helix hacking group is part of a wider umbrella collective of hackers that it tracks as UNC6671. The gang relies on social engineering tactics, such as voice phishing, a tactic that involves calling IT helpdesks and requesting the reset of employee passwords.
Uber Freight 尚未说明是否收到了黑客的任何联络,也未说明是否向黑客支付了赎金。谷歌本周早些时候表示,Helix 黑客组织是一个更广泛的黑客集合体的一部分,谷歌将其追踪为 UNC6671。该团伙依赖社会工程学手段,例如语音钓鱼,即通过致电 IT 服务台并要求重置员工密码来实施攻击。
Security researchers have long warned that these attacks, while crude and rudimentary, are highly effective at tricking humans into granting access to sensitive systems. In its blog post, Google said a review of the gang’s bitcoin wallets shows it has made at least $10.6 million in ransom payments between January and May this year.
安全研究人员长期以来一直警告称,这些攻击虽然粗糙且原始,但在诱骗人类授予敏感系统访问权限方面却非常有效。谷歌在其博客文章中表示,对该团伙比特币钱包的审查显示,今年 1 月至 5 月期间,他们至少获得了 1060 万美元的赎金。