Fortune 500 Companies Hit in Azure Data Theft Campaign
A threat actor is claiming the exfiltration of millions of records from McDonald’s, TCS, Vodafone, and other large organizations. The post Fortune 500 Companies Hit in Azure Data Theft Campaign appeared first on SecurityWeek.
A threat actor is selling data allegedly stolen directly from the Azure tenants of several Fortune 500 organizations.
Using the moniker ‘TheHatman’, the threat actor has been offering millions of records apparently stolen from well-known brands such as McDonald’s Corporation, Tata Consultancy Services (TCS), Vodafone, HCL Technologies, InterContinental Hotels Group (IHG), Kyndryl, Gap Inc., Hexaware Technologies, and Wyndham Hotels.
According to the threat actor, the data was exfiltrated from Azure/Entra instances using leaked credentials.
Source: https://www.securityweek.com/fortune-500-companies-hit-in-azure-data-theft-campaign/
Related breach coverage
- PaperCut Flaws Exploited in AI-Powered Attacks2026-09-11
A Russian threat actor used AI to build, test, and deploy exploits against hundreds of organizations worldwide. The post PaperCut Flaws Exploited in AI-Powered Attacks appeared first on SecurityWeek.
- Berlin Won’t Pay Extortion Group Claiming Data Theft2026-08-31
The Rhysida ransomware group has claimed the exfiltration of over 5TB of data, including personal information and credentials. The post Berlin Won’t Pay Extortion Group Claiming Data Theft appeared first on SecurityWeek.
- Telus Warns Customers of Account Breaches2026-09-14
Stolen credentials were used in a multi-month campaign to access subscriber personal data and billing records. The post Telus Warns Customers of Account Breaches appeared first on SecurityWeek.
- Malicious Virtualizor Update Served via BGP Hijacking2026-09-02
Using a technically valid TLS certificate for Softaculous’ domains, a threat actor diverted traffic to fake software updates. The post Malicious Virtualizor Update Served via BGP Hijacking appeared first on SecurityWeek.