Our takeConnor Riley Moucka pleaded guilty to hacking a U.S. cloud storage provider and extorting its customers after compromising 165+ orgs and stealing billions of records. If you were a customer, treat this as a confirmed breach and review what you stored there.Cyber Resilience desk
Sources (1)
- doj_press · doj_press
What this means for you — Security leader:Review contracts and SLAs with any U.S. cloud storage providers you use; confirm they maintain breach-notification timelines and that your incident response plan includes steps for third-party data theft and extortion demands.
What this means for you — Lean IT orgs:Check whether you use the affected cloud storage provider. If you do, change any reused passwords immediately and watch for unexpected contact from anyone claiming to have your data.
What this means for you — MSP:Inventory all clients using the compromised U.S. cloud storage provider; prepare coordinated password resets, breach-notification guidance, and updated incident playbooks for affected environments.
What this means for you — Researcher:Track the full list of 165+ victim organizations and the specific data types stolen once further details or filings emerge; this incident supplies concrete metrics on scale and extortion success rates.