Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Zscaler Investigates Hacking Claims After Data Offered for Sale

Zscaler says its customer, production and corporate environments are not impacted after a notorious hacker offers to sell access.

Zscaler

Cybersecurity giant Zscaler rushed to conduct an investigation on Wednesday after a notorious hacker offered to sell access to the company’s systems. 

The hacker known as IntelBroker announced on a popular cybercrime forum that he was “selling access to one of the largest cyber security companies”. The hacker’s post does not name the company, but he did confirm in the forum’s shoutbox that it was Zscaler. 

IntelBroker has offered to sell “confidential and highly critical logs packed with credentials”, including SMTP access, PAuth access, and SSL passkeys and certificates, for a total price of $20,000 in cryptocurrency. 

Zscaler announced launching an investigation shortly after learning about the claims. A few hours after the investigation started, it announced that it had found no evidence of its customer and production environments being compromised.

In its latest update, the company confirmed that its production, customer and corporate environments were not impacted.

“Our investigation discovered an isolated test environment on a single server (without any customer data) which was exposed to the internet,” Zscaler said. “The test environment was not hosted on Zscaler infrastructure and had no connectivity to Zscaler’s environments. The test environment was taken offline for forensic analysis.” 

IntelBroker recently claimed to have stolen US State Department and other government data from tech firm Acuity. The company confirmed a breach, but said only non-sensitive, old information was compromised.

Advertisement. Scroll to continue reading.

IntelBroker has been making claims about obtaining US government data for more than a year. In several cases, the data has been confirmed to come from third-party service providers, but in some instances the data was allegedly obtained directly from government systems. However, some of the hacker’s claims seemed false or exaggerated.   

Related: Data of 750 Million Indian Mobile Subscribers Sold on Hacker Forums

Related: Hacker Forum Credentials Found on 120,000 PCs Infected With Info-Stealer Malware

Related: List Containing Millions of Credentials Distributed on Hacking Forum, but Passwords Old

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

In cyber-physical systems (CPS), just one hour of downtime can outweigh an entire annual security budget. Learn how to master the Return on Security Investment (ROSI) to align security goals with the bottom-line priorities.

Register

Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization.

Register

People on the Move

Malwarebytes has named Chung Ip as Chief Financial Officer.

Semperis has appointed John Podboy as Chief Information Security Officer.

Randy Menon has become Chief Product and Marketing Officer at One Identity.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.