Top US defense device maker IEH Corporation admits hackers broke into its systems

https://cdn.mos.cms.futurecdn.net/TLsB5tZb8kRUnWbcRmNDuB-2560-80.jpg
  • Attackers stole IEH employee credentials via a fake Microsoft login page
  • Inbox access exposed sensitive defense‑related communications and technical documentation
  • Malicious mailbox rules were removed as IEH contained the unauthorized access

Criminals have broken into the email inboxes of IEH Corporation, a significant supplier for the US military and companies in the commercial aerospace and space industry.

In an 8-K report filed with the US Securities and Exchange Commission (SEC), IEH said that unidentified threat actors reached out to one of its employees, pretending to be a “prospective business contact”.

The atatckers shared a link to what appeared to be a Microsoft document, prompting the victim to log in. Obviously, the login page was bogus, and the login credentials were relayed to the attackers instead.

Malicious mailbox rules

“The threat actor gained access to mailbox contents, including email messages, attachments, customer communications, purchase orders, engineering-related documentation, and potentially export-controlled technical...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more