ReliaQuest Confirms ShinyHunters Hack, but Says Impact Was Limited
Cybersecurity firm ReliaQuest has confirmed being targeted by hackers affiliated with the notorious ShinyHunters group, but claims the impact of the attack was limited.
ReliaQuest revealed on August 17 in a post on X that it had been tracking a widespread ShinyHunters phishing campaign involving domains with the ‘company.claims’ URL pattern.
The company also warned that the hacker gang has been expanding its social engineering tactics to include legal team impersonation alongside IT and help desk impersonation.
In response to that now-deleted post, someone shared several screenshots that appeared to show access to a ReliaQuest Okta dashboard.
The same screenshots were posted on ShinyHunters’ website, along with a message taunting the security firm.
ReliaQuest addressed the incident on Monday, admitting it had been targeted in a social engineering attack over the weekend.
According to the company, the hackers registered a fake domain and set it up to host a ReliaQuest...
Copyright of this story solely belongs to securityweek.com. To see the full text click HERE