The Council of Europe is investigating data breach claims made by the ShinyHunters extortion group over the weekend. The breach, if confirmed, would affect Europe's oldest intergovernmental body.
The Council of Europe has launched an investigation into allegations that ShinyHunters, a known data extortion group, has breached its systems and obtained sensitive information.
ShinyHunters announced the breach publicly over the weekend, claiming access to Council of Europe data. The group operates by stealing data and threatening to release it unless organizations pay ransoms. This extortion tactic has made them a persistent threat across multiple sectors.
The Council of Europe, established in 1949, is an international organization comprising 46 member states and focused on human rights, democracy, and rule of law across the continent. A successful breach of its systems could potentially expose sensitive information related to member states' operations, legal proceedings, or confidential communications.
The organization has not disclosed specific details about the scope of the alleged breach, the types of data potentially compromised, or the timeline of the incident. Investigations of this scale typically require time to assess the full impact and identify how attackers gained access.
ShinyHunters has previously claimed responsibility for breaches at major companies and organizations. Their pattern involves stealing data, publishing samples as proof, and setting deadlines for payment before releasing the full dataset publicly.
The Council of Europe's investigation will likely involve cybersecurity experts and may trigger notifications to affected member states. Depending on findings, the organization may need to notify individuals whose personal data was compromised under EU data protection regulations.
This incident underscores ongoing cybersecurity challenges faced by high-profile governmental and international organizations, which remain attractive targets for extortion groups seeking both financial gain and publicity.
Gen's latest threat report details two distinct attack campaigns exploiting compromised email accounts and clipboard manipulation to steal from businesses and cryptocurrency users.
Two security researchers purchased commonly-used generic email domains and discovered hundreds of companies automatically sending sensitive corporate data to their listening services. The experiment reveals a widespread failure in email configuration practices across organizations.
Cyberattacks against hedge funds and private equity firms have been attributed to UNC6671, an extortion group connected to the BlackFile threat actors. The campaign represents an escalating threat to the financial sector.
A Go-based malware distributed through ClickFix attacks is targeting macOS users to steal cryptocurrency, passwords, and Apple Keychain data. The infostealer campaign combines social engineering with credential harvesting.