- A hacker published a new thread in an underground forum
- They claim to stole data on 12 million people from Zacks Investment Research
- Zacks has not yet responded to media consultations
Zacks Investment Research, a financial data company, shares of shares and analysis based in Chicago, apparently suffered a cyber attack in which he lost confidential data on millions of people.
A report by Bleepingcomputer He quotes a thread published in an underground piracy forum that claims to have violated Zacks in June 2024, obtaining confidential information about 12 million people, including names, user names, email addresses, postal addresses and telephone numbers.
The thread of the forum contained a small sample and an offer for the entire lot in exchange for a “small amount of cryptocurrencies.”
Expose emails
Speaking to the attacker, the publication discovered that the attacker obtained access to the Active Directory Directory of Zacks as a domain administrator, after which they stole the source code for the main site and another 16 assets. Zacks has not yet responded to media consultations.
At the same time, I have been PWned? A website that added email addresses exposed in data violations, added the new lot, but said that almost all (93%) were exposed in previous attacks.
Zacks has not yet commented on the statements of a data violation. However, it is no stranger to cyber incidents. In December 2022, the company identified unauthorized access to certain customer records. The violation affected approximately 820,000 clients who had registered in the Zacks Elite product between November 1999 and February 2005. The exposed information included names, addresses, telephone numbers, email addresses and passwords of a previous database.
In June 2023, a database that contains personal information of more than 8.8 million Zacks users emerged in a piracy forum. The data, dated until May 2020, included names, addresses, telephone numbers, email addresses, usernames and passwords stored such as halls without salt.
Through Bleepingcomputer