{"id":9028,"date":"2025-11-23T11:23:51","date_gmt":"2025-11-23T11:23:51","guid":{"rendered":"https:\/\/techtrendfeed.com\/?p=9028"},"modified":"2025-11-23T11:23:51","modified_gmt":"2025-11-23T11:23:51","slug":"crowdstrike-fires-employee-over-insider-leak-to-scattered-lapsus-hunters-hackread-cybersecurity-information-knowledge-breaches-tech-ai-crypto-and-extra","status":"publish","type":"post","link":"https:\/\/techtrendfeed.com\/?p=9028","title":{"rendered":"CrowdStrike Fires Employee Over Insider Leak to Scattered Lapsus Hunters \u2013 Hackread \u2013 Cybersecurity Information, Knowledge Breaches, Tech, AI, Crypto and Extra"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p>Main cybersecurity agency <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/fake-crowdstrike-recruiters-malware-phishing-emails\/\" data-type=\"post\" data-id=\"124651\" target=\"_blank\" rel=\"noreferrer noopener\">CrowdStrike<\/a> not too long ago confirmed it fired an worker for sharing confidential inside particulars with a significant hacking group. This incident, which grew to become public on Friday, reveals that inside human danger might be simply as harmful as technical flaws.<\/p>\n<h3 id=\"leaked-data-lands-on-hacker-channel\" class=\"wp-block-heading\"><strong>Leaked Knowledge Lands on Hacker Channel<\/strong><\/h3>\n<p>The terminated worker, who CrowdStrike described as a \u2018suspicious insider,\u2019 was caught giving details about the agency\u2019s non-public programs to a infamous collective known as <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/scattered-lapsus-hunters-hacker-group-shutdown\/\">Scattered Lapsus$ Hunters.<\/a><\/p>\n<p>In your info, this group is broadly often called a supergroup, comprising members from different outstanding hacking entities like <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/scattered-lapsus-hunters-salesforce-breach\/\" data-type=\"post\" data-id=\"135557\" target=\"_blank\" rel=\"noreferrer noopener\">Scattered Spider, LAPSUS$, and ShinyHunters<\/a>.<\/p>\n<p>The stolen info, which was later posted as screenshots on the collective\u2019s public Telegram channel, included photographs of inside dashboards. These visuals contained hyperlinks to firm sources, most notably an Okta Single Signal-On (SSO) panel. Merely put, the SSO is the primary login web page staff use to entry their work purposes.<\/p>\n<h3 id=\"hacker-claims-versus-crowdstrikes-swift-defence\" class=\"wp-block-heading\"><strong>Hacker Claims Versus CrowdStrike\u2019s Swift Defence<\/strong><\/h3>\n<p>The hackers initially claimed that they gained entry to CrowdStrike\u2019s community by exploiting a third-party vendor named Gainsight, a platform usually utilized by Salesforce shoppers for buyer administration. In addition they claimed to have obtained authentication cookies, that are small items of information that allow you to keep logged into an internet site.<\/p>\n<p>Nevertheless, CrowdStrike representatives strongly denied any profitable technical intrusion. They clarified that the screenshots have been simply the results of the insider taking photos of their pc display and sharing them externally, not a systemic community compromise. Additional probing revealed that the group <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/tag\/ShinyHunters\/\" data-type=\"post_tag\" data-id=\"26126\" target=\"_blank\" rel=\"noreferrer noopener\">ShinyHunters<\/a> had allegedly <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/crowdstrike-catches-insider-feeding-information-to-hackers\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">provided<\/a> the worker $25,000 for community entry.<\/p>\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/wp-content\/uploads\/2025\/11\/crowdstrike-fires-worker-insider-leak-scattered-lapsus-hunters-1.jpeg\"><img loading=\"lazy\" decoding=\"async\" width=\"973\" height=\"548\" src=\"https:\/\/hackread.com\/wp-content\/uploads\/2025\/11\/crowdstrike-fires-worker-insider-leak-scattered-lapsus-hunters-1.jpeg\" alt=\"CrowdStrike Fires Worker Over Insider Leak to Scattered Lapsus Hunters\" class=\"wp-image-137557\" srcset=\"https:\/\/hackread.com\/wp-content\/uploads\/2025\/11\/crowdstrike-fires-worker-insider-leak-scattered-lapsus-hunters-1.jpeg 973w, https:\/\/hackread.com\/wp-content\/uploads\/2025\/11\/crowdstrike-fires-worker-insider-leak-scattered-lapsus-hunters-1-300x169.jpeg 300w, https:\/\/hackread.com\/wp-content\/uploads\/2025\/11\/crowdstrike-fires-worker-insider-leak-scattered-lapsus-hunters-1-768x433.jpeg 768w, https:\/\/hackread.com\/wp-content\/uploads\/2025\/11\/crowdstrike-fires-worker-insider-leak-scattered-lapsus-hunters-1-380x214.jpeg 380w, https:\/\/hackread.com\/wp-content\/uploads\/2025\/11\/crowdstrike-fires-worker-insider-leak-scattered-lapsus-hunters-1-800x451.jpeg 800w\" sizes=\"auto, (max-width: 973px) 100vw, 973px\"\/><\/a><figcaption class=\"wp-element-caption\">One of many screenshots shared by the Scattered Lapsus Hunters hackers on Telegram<\/figcaption><\/figure>\n<\/div>\n<p>It&#8217;s value noting that whereas the hackers could have obtained some login info, CrowdStrike maintains that its safety operations centre noticed the weird exercise rapidly, earlier than any dangerous entry could possibly be established. This led to the insider\u2019s termination final month.<\/p>\n<p>An organization spokesperson emphasised the agency\u2019s profitable defence, stating, \u201cOur programs have been by no means compromised and prospects remained protected all through.\u201d<\/p>\n<p>This whole episode is linked to a wider, aggressive effort by the Scattered Lapsus$ Hunters group, who&#8217;ve not too long ago been attacking huge firms by making the most of their contracts with outdoors distributors like <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/shinyhunters-breach-gainsight-salesforce-1000-firms\/\" target=\"_blank\" rel=\"noreferrer noopener\">Salesloft and Gainsight<\/a>. CrowdStrike has since handed over the case to the related regulation enforcement companies.<\/p>\n<p>\n\t\t\t<\/div>\n<p><template id="AbwNq8FdHOsyMriTRiG8"></template><\/script><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Main cybersecurity agency CrowdStrike not too long ago confirmed it fired an worker for sharing confidential inside particulars with a significant hacking group. This incident, which grew to become public on Friday, reveals that inside human danger might be simply as harmful as technical flaws. Leaked Knowledge Lands on Hacker Channel The terminated worker, who [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":9030,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[5449,2613,662,361,157,3300,6013,5712,6567,5711,1054,121,2075,1173,6566],"class_list":["post-9028","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-breaches","tag-crowdstrike","tag-crypto","tag-cybersecurity","tag-data","tag-fires","tag-hackread","tag-hunters","tag-insider","tag-lapsus","tag-leak","tag-news","tag-scattered","tag-tech","tag-worker"],"_links":{"self":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/9028","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=9028"}],"version-history":[{"count":1,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/9028\/revisions"}],"predecessor-version":[{"id":9029,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/9028\/revisions\/9029"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/media\/9030"}],"wp:attachment":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=9028"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=9028"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=9028"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}<!-- This website is optimized by Airlift. Learn more: https://airlift.net. Template:. Learn more: https://airlift.net. Template: 69d9690a190636c2e0989534. Config Timestamp: 2026-04-10 21:18:02 UTC, Cached Timestamp: 2026-06-09 21:22:10 UTC -->