Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
LexisNexis Breach Exposes Data from AWS Servers

LexisNexis Breach Exposes Data from AWS Servers

Posted on March 3, 2026 By CWS

In a recent cybersecurity incident, a hacker known as FulcrumSec has claimed to have breached the LexisNexis Legal & Professional division of RELX Group. The attacker alleges the theft of 2.04 GB of structured data from the company’s Amazon Web Services (AWS) cloud setup.

Details of the Security Breach

FulcrumSec revealed in a post dated March 3, 2026, that they initially gained access on February 24. This access was reportedly achieved by exploiting the React2Shell vulnerability found in an unpatched React application, which the company had allegedly left unsecured for an extended period.

The attacker utilized a compromised ECS task container, LawfirmsStoreECSTaskRole, which was granted access to critical resources. These included the production Redshift data warehouse, 17 VPC databases, AWS Secrets Manager, and the Qualtrics survey platform.

Security Vulnerabilities Criticized

In their post, FulcrumSec criticized LexisNexis’s security measures, noting that the RDS master password was alarmingly simple: “Lexis1234”. Furthermore, a single task role was found to have read access to all secrets within the AWS account, including key production database credentials.

The breach allegedly exposed 536 Redshift tables, over 430 VPC database tables, and 53 plaintext secrets from AWS Secrets Manager. The total volume of records compromised is estimated at 3.9 million, with around 400,000 cloud user profiles potentially affected.

Implications and Response

Among the exposed user profiles, 118 accounts were linked to .gov email addresses of federal judges, law clerks, and attorneys from the U.S. Department of Justice and the SEC. The attacker also claims to have acquired a complete map of the VPC infrastructure and a full dump of AWS Secrets Manager.

FulcrumSec clarified that this incident is unrelated to the December 2024 GitHub breach, which involved unauthorized access to personal data via LexisNexis’s third-party platform. This recurring issue highlights ongoing security concerns within a major repository of legal data.

Follow our updates on Google News, LinkedIn, and X for more on cybersecurity developments. Reach out to feature your own stories.

Cyber Security News Tags:AWS, cloud infrastructure, Cybersecurity, data breach, data security, FulcrumSec, LexisNexis, React2Shell, Redshift, security vulnerability

Post navigation

Previous Post: SloppyLemming Espionage Targets South Asia with New Tools
Next Post: Microsoft Unveils OAuth-Based Phishing Threat

Related Posts

Tomiris Hacker Group Added New Tools and Techniques to Attack Organizations Globally Tomiris Hacker Group Added New Tools and Techniques to Attack Organizations Globally Cyber Security News
Apache Tomcat Security Flaw Allows Constraint Bypass Apache Tomcat Security Flaw Allows Constraint Bypass Cyber Security News
Critical Emby Server Vulnerability Let Attackers Gain Admin Access Critical Emby Server Vulnerability Let Attackers Gain Admin Access Cyber Security News
Fortinet FortiSIEM Vulnerability CVE-2025-64155 Actively Exploited in Attacks Fortinet FortiSIEM Vulnerability CVE-2025-64155 Actively Exploited in Attacks Cyber Security News
Hackers Registered 2,000+ Fake Holiday-Themed Online Stores to Steal User Payments Hackers Registered 2,000+ Fake Holiday-Themed Online Stores to Steal User Payments Cyber Security News
Hackers Actively Exploiting CitrixBleed 2 Vulnerability in the Wild Hackers Actively Exploiting CitrixBleed 2 Vulnerability in the Wild Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • OpenAI Launches Expanded Cyber Defense with GPT-5.4-Cyber
  • AI-Powered Exploit Reveals Chrome Vulnerability Risks
  • Apple Aims to Fix iPhone Bug Removing Czech Character
  • Emerging Nexcorium Botnet Exploits DVR Vulnerability
  • Tycoon 2FA Loses Ground Amid Rising Phishing Threats

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • OpenAI Launches Expanded Cyber Defense with GPT-5.4-Cyber
  • AI-Powered Exploit Reveals Chrome Vulnerability Risks
  • Apple Aims to Fix iPhone Bug Removing Czech Character
  • Emerging Nexcorium Botnet Exploits DVR Vulnerability
  • Tycoon 2FA Loses Ground Amid Rising Phishing Threats

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark