Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Zscaler Investigates Hacking Claims After Data Offered for Sale

Zscaler says its customer, production and corporate environments are not impacted after a notorious hacker offers to sell access.

Zscaler

Cybersecurity giant Zscaler rushed to conduct an investigation on Wednesday after a notorious hacker offered to sell access to the company’s systems. 

The hacker known as IntelBroker announced on a popular cybercrime forum that he was “selling access to one of the largest cyber security companies”. The hacker’s post does not name the company, but he did confirm in the forum’s shoutbox that it was Zscaler. 

IntelBroker has offered to sell “confidential and highly critical logs packed with credentials”, including SMTP access, PAuth access, and SSL passkeys and certificates, for a total price of $20,000 in cryptocurrency. 

Zscaler announced launching an investigation shortly after learning about the claims. A few hours after the investigation started, it announced that it had found no evidence of its customer and production environments being compromised.

In its latest update, the company confirmed that its production, customer and corporate environments were not impacted.

“Our investigation discovered an isolated test environment on a single server (without any customer data) which was exposed to the internet,” Zscaler said. “The test environment was not hosted on Zscaler infrastructure and had no connectivity to Zscaler’s environments. The test environment was taken offline for forensic analysis.” 

IntelBroker recently claimed to have stolen US State Department and other government data from tech firm Acuity. The company confirmed a breach, but said only non-sensitive, old information was compromised.

Advertisement. Scroll to continue reading.

IntelBroker has been making claims about obtaining US government data for more than a year. In several cases, the data has been confirmed to come from third-party service providers, but in some instances the data was allegedly obtained directly from government systems. However, some of the hacker’s claims seemed false or exaggerated.   

Related: Data of 750 Million Indian Mobile Subscribers Sold on Hacker Forums

Related: Hacker Forum Credentials Found on 120,000 PCs Infected With Info-Stealer Malware

Related: List Containing Millions of Credentials Distributed on Hacking Forum, but Passwords Old

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar as we explore if detection-first security operations can keep pace with AI, or if it’s time to rethink prevention as the strongest default.

Register

CodeSecCon bridges the gap between dev and security. Discover best practices for secure coding, innovative risk-reduction tools, and safe AI integration to cultivate a true DevSecOps culture. Safely secure your apps!

Register

People on the Move

1Kosmos has named Frank Cohen Chief Revenue Officer.

ServiceNow has appointed Simon Mouyal as Chief Marketing Officer.

James Wilkinson has been named Chief Information Security Officer for the City of Dallas.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.