{"id":2829,"date":"2025-11-22T12:26:06","date_gmt":"2025-11-22T07:26:06","guid":{"rendered":"https:\/\/paknews.centers.pk\/crowdstrike-fires-suspicious-insider-who-passed-information-to-hackers\/"},"modified":"2025-11-22T12:26:06","modified_gmt":"2025-11-22T07:26:06","slug":"crowdstrike-fires-suspicious-insider-who-passed-information-to-hackers","status":"publish","type":"post","link":"https:\/\/paknews.centers.pk\/ur\/crowdstrike-fires-suspicious-insider-who-passed-information-to-hackers\/","title":{"rendered":"CrowdStrike fires &#8216;suspicious insider&#8217; who passed information to hackers"},"content":{"rendered":"<p><br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">Cybersecurity giant CrowdStrike has confirmed firing a \u201csuspicious insider\u201d last month who allegedly fed information about the company to a notorious hacking group.<\/p>\n<p class=\"wp-block-paragraph\">A hacking collective known as Scattered Lapsus$ Hunters published screenshots late Thursday and Friday morning in a public Telegram channel that allegedly showed insider access to CrowdStrike systems. The screenshots, <a href=\"https:\/\/techcrunch.com\/2025\/11\/21\/google-says-hackers-stole-data-from-200-companies-following-gainsight-breach\/\" target=\"_blank\" rel=\"noopener\">which TechCrunch has seen<\/a>, show dashboards containing links to company resources, including a user\u2019s Okta dashboard used by employees for accessing internal apps.<\/p>\n<p class=\"wp-block-paragraph\">The hackers claimed in the Telegram channel to have compromised CrowdStrike through a <a href=\"https:\/\/techcrunch.com\/2025\/11\/20\/salesforce-says-some-of-its-customers-data-was-accessed-after-gainsight-breach\/\" target=\"_blank\" rel=\"noopener\">recent breach at Gainsight<\/a>, a customer relationship management company that helps Salesforce customers track and manage their own customers\u2019 data. The hackers said they used information stolen from Gainsight to break into CrowdStrike.<\/p>\n<p class=\"wp-block-paragraph\">But CrowdStrike says the hackers\u2019 claims are \u201cfalse,\u201d and says it terminated the insider\u2019s access after the company \u201cdetermined he shared pictures of his computer screen externally.\u201d<\/p>\n<p class=\"wp-block-paragraph\">\u201cOur systems were never compromised and customers remained protected throughout. We have turned the case over to relevant law enforcement agencies,\u201d CrowdStrike spokesperson Kevin Benacci told TechCrunch.<\/p>\n<p class=\"wp-block-paragraph\">Several other tech companies were allegedly hacked as part of the same campaign. Gainsight did not respond to TechCrunch\u2019s requests for comment.<\/p>\n<p class=\"wp-block-paragraph\">Scattered Lapsus$ Hunters is a collective of hackers made up of several hacking groups, notably <a href=\"https:\/\/techcrunch.com\/2025\/11\/17\/doordash-confirms-data-breach-impacting-users-phone-numbers-and-physical-addresses\/\" target=\"_blank\" rel=\"noopener\">ShinyHunters<\/a>, <a href=\"https:\/\/techcrunch.com\/2024\/11\/23\/the-rise-and-fall-of-the-scattered-spider-hackers\/\" target=\"_blank\" rel=\"noopener\">Scattered Spider<\/a>, and <a href=\"https:\/\/techcrunch.com\/2022\/03\/22\/okta-january-hack-breach\/\" target=\"_blank\" rel=\"noopener\">Lapsus$<\/a>. The group\u2019s members use <a href=\"https:\/\/techcrunch.com\/2025\/04\/25\/techcrunch-reference-guide-to-security-terminology\/#social-engineering\" target=\"_blank\" rel=\"noopener\">social engineering techniques<\/a> to trick employees into granting them access to their systems or databases.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">In October, Scattered Lapsus$ Hunters claimed to have stolen <a href=\"https:\/\/techcrunch.com\/2025\/10\/03\/hacking-group-claims-theft-of-1-billion-records-from-salesforce-customer-databases\/\" target=\"_blank\" rel=\"noopener\">more than 1 billion records from corporate giants<\/a> who rely on Salesforce to host their customer data. The hackers published a data leak site listing data stolen from companies, including insurance giant <a href=\"https:\/\/techcrunch.com\/2025\/08\/18\/allianz-life-data-breach-affects-1-1-million-customers\/\" target=\"_blank\" rel=\"noopener\">Allianz Life<\/a>,<a href=\"https:\/\/techcrunch.com\/2025\/08\/06\/google-says-hackers-stole-its-customers-data-in-a-breach-of-its-salesforce-database\/\" target=\"_blank\" rel=\"noopener\"> <\/a>the airline <a href=\"https:\/\/techcrunch.com\/2025\/07\/02\/qantas-hack-results-in-theft-of-6-million-passengers-personal-data\/\" target=\"_blank\" rel=\"noopener\">Qantas<\/a>, carmaker <a href=\"https:\/\/techcrunch.com\/2025\/09\/22\/automaker-giant-stellantis-says-customers-personal-data-stolen-during-breach\/\" target=\"_blank\" rel=\"noopener\">Stellantis<\/a>, credit bureau <a href=\"https:\/\/techcrunch.com\/2025\/08\/28\/transunion-says-hackers-stole-4-4-million-customers-personal-information\/\" target=\"_blank\" rel=\"noopener\">TransUnion<\/a>, the employee management platform <a href=\"https:\/\/techcrunch.com\/2025\/08\/18\/hr-giant-workday-says-hackers-stole-personal-data-in-recent-breach\/\" target=\"_blank\" rel=\"noopener\">Workday<\/a>, and others.\u00a0<\/p>\n<div class=\"wp-block-techcrunch-inline-cta\">\n<div class=\"inline-cta__wrapper\">\n<p>Techcrunch event<\/p>\n<div class=\"inline-cta__content\">\n<p>\n\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__location\">San Francisco<\/span><br \/>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__separator\">|<\/span><br \/>\n\t\t\t\t\t\t\t\t\t\t\t\t\t<span class=\"inline-cta__date\">October 13-15, 2026<\/span>\n\t\t\t\t\t\t\t<\/p>\n<\/p><\/div>\n<\/p><\/div>\n<\/div>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2025\/11\/21\/crowdstrike-fires-suspicious-insider-who-passed-information-to-hackers\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>Cybersecurity giant CrowdStrike has confirmed firing a \u201csuspicious insider\u201d last month who allegedly fed information about the company to a notorious hacking group. A hacking collective known as Scattered Lapsus$ Hunters published screenshots late Thursday and Friday morning in a public Telegram channel that allegedly showed insider access to CrowdStrike systems. The screenshots, which TechCrunch [&hellip;]<\/p>","protected":false},"author":1,"featured_media":2830,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[36],"tags":[],"class_list":["post-2829","post","type-post","status-publish","format-standard","has-post-thumbnail","category-tech"],"_links":{"self":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/2829","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/comments?post=2829"}],"version-history":[{"count":0,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/2829\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media\/2830"}],"wp:attachment":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media?parent=2829"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/categories?post=2829"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/tags?post=2829"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}