Credera Hit by Major Cyberattack, High-Profile Clients Compromised
Global consulting firm Credera has reportedly fallen victim to a significant cyberattack. High-profile clients such as Southwest Airlines, AstraZeneca, and Mercedes-Benz are believed to be affected. Cybernews has confirmed the authenticity of stolen documents. The breach has exposed a vast trove of sensitive information. This includes Terraform configuration files, SSL certificates, and hardcoded credentials. Stolen data ranges from confidential documents and source code to credentials and API keys. Among the compromised data are code snippets and private correspondence between Credera and its clients. The perpetrators claim to have gained access to hardcoded authentication tokens, which could grant unauthorized access to internal APIs. They also allege to possess SQL files and private certificate keys, posing further threats to corporate systems. Exposed source code and software architecture could potentially be exploited to target specific vulnerabilities. The extent of the damage is still being assessed. Credera and its affected clients are working to mitigate the situation. Cybersecurity experts urge all companies to remain vigilant and ensure robust security measures are in place to protect against such attacks.
Read also:
- Web3 social arcade extends Pixelverse's tap-to-earn feature beyond Telegram to Base and Farcaster platforms.
- Over 5,600 Road Safety Violations Caught in Manchester Trial
- Jaguar Land Rover Resumes Production After Cyberattack, UK Govt & Banks Provide £3.5B Support
- French Police Arrest ShinyHunters Hacker Group Leader After Kering Data Breach