ShinyHunters Claims Ernst & Young Hack
The infamous ShinyHunters extortion group has claimed responsibility for the recently disclosed Ernst & Young (EY) data breach.
Earlier this month, the professional services giant reported to the Attorney General’s Offices in several states that hackers stole personal and financial information from a third-party service management platform used to support tax-related work.
Between March 28 and April 12, the company said, the attackers downloaded the tax-related documents of Ernst & Young clients that were included in support tickets submitted through the platform.
Client names, addresses, Social Security numbers, account numbers, credit/debit card numbers, and other types of information used for tax filings were compromised in the data breach.
The company is providing the potentially impacted individuals with 24 months of free credit monitoring, identity monitoring, and identity restoration services.
Ernst & Young has not shared details on the number of potentially affected individuals, nor did it say who was behind...
Copyright of this story solely belongs to securityweek.com. To see the full text click HERE