Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Lapsus$ Claims Major Data Breach at AstraZeneca

Lapsus$ Claims Major Data Breach at AstraZeneca

Posted on March 24, 2026 By CWS

The Lapsus$ extortion group has made headlines once more, this time claiming responsibility for a cyberattack on AstraZeneca. The group announced on a dark web forum that it has accessed and stolen approximately 3GB of sensitive data from the major biopharmaceutical company.

Details of the Alleged Breach

According to Lapsus$, the stolen data includes a variety of sensitive enterprise information. This encompasses credentials and tokens, internal code repositories, and employee details. The group reportedly exfiltrated Java-based application code, including crucial components like controllers, repositories, services, and configuration files.

Cybersecurity firm SocRadar has highlighted that the leaked data may involve project paths linked to internal development assets. This includes Angular and Python packages, as well as critical cloud infrastructure information from AWS, Azure, and Terraform.

Implications and Potential Impact

Moreover, the breach allegedly extends to various credentials and secrets, user information related to GitHub Enterprise, and corporate email addresses. A file tree analysis suggests the breach might affect internal business operations, supply chain workflows, and system administration data.

Lapsus$ has listed AstraZeneca on its Tor-based leak site, proposing the sale of the stolen information. However, no pricing information has been disclosed yet.

Verification and Industry Reactions

If the claims by Lapsus$ are substantiated, the repercussions could be extensive, influencing employees, partners, intellectual property, and the broader supply chain. AstraZeneca has not publicly confirmed the breach or the extortion group’s assertions.

There are speculations linking this hack to a recent supply chain attack on Aqua’s Trivy vulnerability scanner. However, security experts remain unconvinced, attributing the connection to circumstantial evidence.

SecurityWeek has reached out to AstraZeneca for comments on the situation and will provide updates upon receiving a response.

Security Week News Tags:AstraZeneca, biopharmaceutical, cloud infrastructure, cyber attack, Cybersecurity, data breach, Extortion, Hacking, LAPSUS, sensitive data

Post navigation

Previous Post: TeamPCP Exploits Checkmarx GitHub Actions with Stolen Credentials
Next Post: Google Forms Exploited in New PureHVNC Malware Attack

Related Posts

Passkey Login Bypassed via WebAuthn Process Manipulation Passkey Login Bypassed via WebAuthn Process Manipulation Security Week News
IoT Security Firm Exein Raises €100 Million IoT Security Firm Exein Raises €100 Million Security Week News
Chinese APT Mustang Panda Caught Using Kernel-Mode Rootkit Chinese APT Mustang Panda Caught Using Kernel-Mode Rootkit Security Week News
Join AI Risk Summit 2026 at Ritz-Carlton, Half Moon Bay Join AI Risk Summit 2026 at Ritz-Carlton, Half Moon Bay Security Week News
Securing Industrial Control Systems: Challenges and Future Securing Industrial Control Systems: Challenges and Future Security Week News
Researcher Spotlights WhatsApp Metadata Leak as Meta Begins Rolling Out Fixes Researcher Spotlights WhatsApp Metadata Leak as Meta Begins Rolling Out Fixes Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Malicious Extension Mimics Google Translate, Compromises Browsers
  • OpenAI’s Astra Sparks Cybersecurity Worries
  • Secure AI-Driven Development: Webinar Insights
  • CEVA Logistics Breach Exposes Steam Hardware Buyers
  • Stealthium Enhances Security for AI Accelerators and Neo-Clouds

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Malicious Extension Mimics Google Translate, Compromises Browsers
  • OpenAI’s Astra Sparks Cybersecurity Worries
  • Secure AI-Driven Development: Webinar Insights
  • CEVA Logistics Breach Exposes Steam Hardware Buyers
  • Stealthium Enhances Security for AI Accelerators and Neo-Clouds

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark