HomeSecurityCisco confirms second data leak

Cisco confirms second data leak

A hacker has leaked additional data stolen from a Cisco DevHub instance, and the tech giant has confirmed its authenticity and that it came from a recently disclosed leak.

See also: IntelBroker leaked data from Cisco DevHub portal

Cisco data leak

The hacker known as IntelBroker announced on October 14 that he and others had breached Cisco systems and obtained source code, certificates, credentials, confidential documents, encryption keys and other types of information.

Cisco's investigation showed that its systems had not been compromised and that the data was actually obtained from a public DevHub environment that served as a resource center providing source code, scripts, and other content to customers.

While much of the data from this DevHub instance is already public, some of the files obtained by the hackers should not have been public, Cisco admitted. IntelBroker later confirmed that the data was obtained from a DevHub instance that began leaking files.

See also: Will Cisco acquire threat detection company SnapAttack?

The hacker initially claimed to have obtained 800 GB of files, but later said that 4.5 TB of data was taken from the DevHub environment. In mid-December, he released about 3 GB of the data, and on Christmas Day, another batch of files was leaked, totaling over 4 GB.

Cisco confirms second data leak

The leaked data includes source code, scripts, digital certificates, and configuration files related to Cisco products.

Cisco said after the second leak that it analyzed the data and found that it "aligns with the known data set from October 14, 2024.".

Cisco initially said it had no evidence that sensitive personal information or financial data was compromised, but has since removed that statement from its incident reports.

See also: Cisco warns of attacks exploiting ASA vulnerability

Data breaches are a serious threat to security and privacy, especially in a world that is increasingly dependent on technology. They occur when sensitive information is exposed or obtained without authorization, whether through hacker attacks, human error, or inadequate security measures. The consequences of a data breach can be devastating, including loss of trust, financial losses, and risk to corporate reputation. Protecting data requires robust measures, such as encryption, the use of strong passwords, and regular monitoring of security systems.

Source: securityweek

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Absentee Mia
Absentee Miahttps://www.secnews.gr/politiki-syntaxis/
Member of the Editorial Team of SecNews. He writes about cybersecurity, online fraud, privacy and technology. All articles follow the SecNews Editorial Policy.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS