Threat Intelligence

ASML compromise falsely claimed by refuted NordVPN hacker

(Adobe Stock)

Cybernews reports that major Dutch global semiconductor equipment supplier ASML has denied the alleged hack of its systems by the threat actor 1011, who also made false assertions breaching NordVPN earlier this week.

More than 150 ASML databases supposedly containing user data, disk encryption keys, and software- and device-related information were claimed to have been stolen by 1011, who threatened to expose such data in a Tuesday post on BreachForums. Further analysis, however, revealed that the leaked data originated from a server not associated with ASML, with the database also including only a lone default admin user and lacking encryption keys, according to the Cybernews research team.

"It is interesting that this user still hasn't been banned from the forum for scamming. This situation shows that there isn't really any moderation on the forum at the moment, which is not the usual state of affairs," said researchers, who suspect that such claims have been made by 1011 only to procure credits necessary for engaging in other data leaks.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms of Use and Privacy Policy.

You can skip this ad in 5 seconds