The Anubis ransomware operation, which launched in December 2024 and operates as a ransomware-as-a-service (RaaS), claims to have exfiltrated 170,000 files from AkzoNobel.
The breach occurred on February 24 when threat actor FulcrumSec exploited the React2Shell vulnerability in an unpatched React frontend application to gain access to the company's AWS infrastructure.
The Coruna exploit kit utilizes a "watering hole" attack method, where visiting a malicious website containing the exploit code can bypass an iPhone's defenses.
The breach, described as a "systematic and sophisticated attack," led to unauthorized access to basic account details including contact information, usernames, dates of birth, and names.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.