Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Lapsus$ Claims Major Data Breach at AstraZeneca

Lapsus$ Claims Major Data Breach at AstraZeneca

Posted on March 24, 2026 By CWS

The Lapsus$ extortion group has made headlines once more, this time claiming responsibility for a cyberattack on AstraZeneca. The group announced on a dark web forum that it has accessed and stolen approximately 3GB of sensitive data from the major biopharmaceutical company.

Details of the Alleged Breach

According to Lapsus$, the stolen data includes a variety of sensitive enterprise information. This encompasses credentials and tokens, internal code repositories, and employee details. The group reportedly exfiltrated Java-based application code, including crucial components like controllers, repositories, services, and configuration files.

Cybersecurity firm SocRadar has highlighted that the leaked data may involve project paths linked to internal development assets. This includes Angular and Python packages, as well as critical cloud infrastructure information from AWS, Azure, and Terraform.

Implications and Potential Impact

Moreover, the breach allegedly extends to various credentials and secrets, user information related to GitHub Enterprise, and corporate email addresses. A file tree analysis suggests the breach might affect internal business operations, supply chain workflows, and system administration data.

Lapsus$ has listed AstraZeneca on its Tor-based leak site, proposing the sale of the stolen information. However, no pricing information has been disclosed yet.

Verification and Industry Reactions

If the claims by Lapsus$ are substantiated, the repercussions could be extensive, influencing employees, partners, intellectual property, and the broader supply chain. AstraZeneca has not publicly confirmed the breach or the extortion group’s assertions.

There are speculations linking this hack to a recent supply chain attack on Aqua’s Trivy vulnerability scanner. However, security experts remain unconvinced, attributing the connection to circumstantial evidence.

SecurityWeek has reached out to AstraZeneca for comments on the situation and will provide updates upon receiving a response.

Security Week News Tags:AstraZeneca, biopharmaceutical, cloud infrastructure, cyber attack, Cybersecurity, data breach, Extortion, Hacking, LAPSUS, sensitive data

Post navigation

Previous Post: TeamPCP Exploits Checkmarx GitHub Actions with Stolen Credentials
Next Post: Google Forms Exploited in New PureHVNC Malware Attack

Related Posts

Flaw Allowing Website Takeover Found in WordPress Plugin With 400k Installations Flaw Allowing Website Takeover Found in WordPress Plugin With 400k Installations Security Week News
Analysis of 6 Billion Passwords Shows Stagnant User Behavior Analysis of 6 Billion Passwords Shows Stagnant User Behavior Security Week News
Slow and Steady Security: Lessons from the Tortoise and the Hare Slow and Steady Security: Lessons from the Tortoise and the Hare Security Week News
Victoria’s Secret Says It Will Postpone Earnings Report After Recent Security Breach Victoria’s Secret Says It Will Postpone Earnings Report After Recent Security Breach Security Week News
Sandworm Mode: New NPM Supply Chain Attack Uncovered Sandworm Mode: New NPM Supply Chain Attack Uncovered Security Week News
MIND Raises  Million for Data Loss Prevention MIND Raises $30 Million for Data Loss Prevention Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Urgent: cPanel and WHM Security Updates Released
  • TCLBANKER Trojan Expands Through WhatsApp and Outlook
  • Critical Microsoft 365 Copilot Flaws Resolved by Microsoft
  • NVIDIA Data Breach Exposes GeForce Users’ Personal Info
  • Let’s Encrypt Temporarily Stops Certificate Issuance After Issue

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Urgent: cPanel and WHM Security Updates Released
  • TCLBANKER Trojan Expands Through WhatsApp and Outlook
  • Critical Microsoft 365 Copilot Flaws Resolved by Microsoft
  • NVIDIA Data Breach Exposes GeForce Users’ Personal Info
  • Let’s Encrypt Temporarily Stops Certificate Issuance After Issue

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark