Uber Freight reportedly investigating after hacking group claims data breach


A hacking and extortion gang has taken credit for a cyberattack and data breach at Uber Freight, the ridesharing giant’s logistics subsidiary.

A spokesperson for Uber Freight told Reuters, which first reported the incident, that there was no effect on its business operations and that its systems were running normally. (The company did not immediately respond to TechCrunch’s questions about the incident.)

The shipping company is the latest victim in a spate of hacks in recent weeks conducted by the Helix hacking group, which has targeted transportation companies, financial giants, and private equity firms throughout the year. The hackers are known for targeting companies and exfiltrating large amounts of data from their cloud environments, which they then threaten to publish if the victim companies do not pay a ransom.

In a post on its data leak site, which it uses to host the stolen files, the Helix hackers claim to have taken mailboxes, cloud storage drives, files relating to accounts payable, and dispatch documents from Uber Freight.

Some of the files seen by TechCrunch appear to show email correspondence between Uber Freight and several of its customers. TechCrunch could not immediately verify the authenticity of the files, which appeared to be dated around mid-June.

Uber Freight has not yet said if it received any correspondence from the hackers, or if it paid the hackers a ransom. 

Google said earlier this week that the Helix hacking group is part of a wider umbrella collective of hackers that it tracks as UNC6671. The gang relies on social engineering tactics, such as voice phishing, a tactic that involves calling IT helpdesks and requesting the reset of employee passwords. Security researchers have long warned that these attacks, while crude and rudimentary, are highly effective at tricking humans into granting access to sensitive systems.

In its blog post, Google said a review of the gang’s bitcoin wallets shows it has made at least $10.6 million in ransom payments between January and May this year.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.



Source link

  • Related Posts

    The Matic is the first robovac to get an FCC ban waiver, not that it needs it

    The Matic is our favorite robot vacuum and robo-mop, and it’s also now the first to escape the FCC’s Roomba ban. Well, sort of — because the Matic wasn’t banned…

    Continue reading
    Cable lobby to sue Trump FCC over repeal of national TV ownership cap

    The cable groups’ filing said the FCC repeal of the TV ownership cap violates the 2004 action by US lawmakers. The decision by Congress to set the cap at a…

    Continue reading

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    GTA 6 devs tried “not to jump on the bandwagon” of passing trends and instead created their “own slanted, overblown versions”

    GTA 6 devs tried “not to jump on the bandwagon” of passing trends and instead created their “own slanted, overblown versions”

    News of the day: Cenovus and Suncor deals, student housing developments, hidden market warnings, better living standards, bond markets and more

    Sean McVay addresses Rams coaches trading obscene gestures with Eagles fans

    Sean McVay addresses Rams coaches trading obscene gestures with Eagles fans

    Southwest Premier Business Card review: A budget-friendly choice for Southwest loyalists

    Southwest Premier Business Card review: A budget-friendly choice for Southwest loyalists

    College sports tradition "Hawkeye Wave" reaches new high, as opposing team gets involved

    College sports tradition "Hawkeye Wave" reaches new high, as opposing team gets involved

    The Matic is the first robovac to get an FCC ban waiver, not that it needs it

    The Matic is the first robovac to get an FCC ban waiver, not that it needs it