Friday, April 4, 2025
HomeCyber AttackNASA Hacked - Hackers Compromised NASA Servers & Personal Data May have...

NASA Hacked – Hackers Compromised NASA Servers & Personal Data May have been Stolen

Published on

SIEM as a Service

Follow Us on Google News

NASA announced a critical data breach on its own server that contains a
personally identifiable information (PII) of current and old employees.

NASA recently conducting an internal security audit that reveals one of the NASA server where Social Security numbers and other PII data were stored.

Security experts learned this incidents on Oct. 23, 2018 but it tooks nearly 2 months to notify to NASA emoloyees.

The incident has been notified to all the employees that states attackers may have been stolen the personal data.

According to spaceref,  NASA and its Federal cybersecurity partners are continuing to examine the servers to determine the scope of the potential data exfiltration and identify potentially affected individuals. This process will take time. The ongoing investigation is a top agency priority, with senior leadership actively involved”,  

NASA believes that no other data’s and mission were compromised by this data breach and NASA Provided the specific data including past and present, whose PII was affected, to include offering identity protection services and related resources.

Also NASA stats that, “Those NASA Civil Service employees who were on-boarded, separated from the agency, and/or transferred between Centers, from July 2006 to October 2018, may have been affected. “

NASA security experts took immediate action to secure the servers where the data contained and reports says entire leadership team takes the protection of personal information very seriously. Information security remains a top priority for NASA.

Also Read:

15,779 Indian Websites Hacked During This Year (Jan – Nov) – CERT-India

100,000 Printers Hacked Worldwide Again by Hackers to Promote PewDiePie YouTube Channel

Quora Hacked – 100 Million User’s Data Stolen By Hackers

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Beware! Weaponized Job Recruitment Emails Spreading BeaverTail and Tropidoor Malware

A concerning malware campaign was disclosed by the AhnLab Security Intelligence Center (ASEC), revealing...

EncryptHub Ransomware Uncovered Through ChatGPT Use and OPSEC Failures

EncryptHub, a rapidly evolving cybercriminal entity, has come under intense scrutiny following revelations of...

PoisonSeed Targets CRM and Bulk Email Providers in New Supply Chain Phishing Attack

A sophisticated phishing campaign, dubbed "PoisonSeed," has been identified targeting customer relationship management (CRM)...

Beware! Fake Unpaid Tolls Messages Used in Phishing Attack to Steal Login Credentials

A surge in phishing text messages claiming unpaid tolls has been linked to a...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Beware! Weaponized Job Recruitment Emails Spreading BeaverTail and Tropidoor Malware

A concerning malware campaign was disclosed by the AhnLab Security Intelligence Center (ASEC), revealing...

EncryptHub Ransomware Uncovered Through ChatGPT Use and OPSEC Failures

EncryptHub, a rapidly evolving cybercriminal entity, has come under intense scrutiny following revelations of...

PoisonSeed Targets CRM and Bulk Email Providers in New Supply Chain Phishing Attack

A sophisticated phishing campaign, dubbed "PoisonSeed," has been identified targeting customer relationship management (CRM)...