- PLL Electric Utilities confirms the data disclosed online
- He was stolen from a third -party supplier during the Hack Moveit
- No banking or payment information has been disclosed
It has been almost two years since the MFT Moveit data violation fiasco, but businesses and their customers still have the consequences.
PLL Electric Utilities is the last to confirm that the information stolen in 2023 has now been disclosed online, as one of its suppliers has been exposed via Moveit.
“The information does not extend beyond basic information such as the name, address, telephone number, email address and account number,” said a spokesperson for ‘business. Banking or credit card information, social security numbers or account passwords have not been disclosed, because PPL has not shared this data with the supplier compromised first – but information can still Be used in phishing attack, identity theft, social engineering and more.
Millions of victims
“This problem is not completely linked to PPL systems and critical infrastructure in all our areas of service,” said the company.
The Moveit 2023 data violation was a large -scale cyber attack exploiting zero day vulnerability in the transfer of managed Moveit files, file transfer software built by the progression software. It was discovered at the end of May 2023, when the defect allowed the attackers to execute SQL injection attacks and to gain unauthorized access to sensitive data.
The ransomware actors known as CL0P were those who operated the bug to steal data from organizations around the world. The attack had an impact on more than 600 organizations and around 40 million people, including governments, financial institutions, health care providers and large companies. Among the more notable victims are American federal agencies, British Airways, Shell and BBC.
The Ransomware CL0P gang would have extorted between $ 75 million and $ 100 million. Despite a small percentage of victims who choose to pay, the group obtained substantial sums of some privileged people who responded to their high ransom requests.
Via The record