Threat Actor IntelBroker Claims Leak of Cognizant OIPA Database

The notorious threat actor known as IntelBroker has claimed responsibility for leaking a database belonging to Cognizant’s Oracle Insurance Policy Administration (OIPA) system.

The announcement was made via Twitter on the dark web, sending shockwaves through the cybersecurity community and raising concerns about the security of sensitive data within major corporations.

The Alleged Breach

The claim was first reported by DarkWebInformer, a well-known source for tracking cyber threats and dark web activities.

"Is Your System Under Attack? Try Cynet XDR: Automated Detection & Response for Endpoints, Networks, & Users!"- Free Demo

According to the post on their social media platform, IntelBroker has allegedly obtained and leaked sensitive information from Cognizant’s OIPA database.

The specifics of the data compromised have not been fully disclosed, but initial reports suggest that it could include personal information, policy details, and possibly financial records.

Cognizant, a global leader in IT services and consulting, utilizes the OIPA system to manage insurance policies for numerous clients.

The potential exposure of such data could have far-reaching implications, not only for Cognizant but also for its clients and their policyholders.

The breach, if confirmed, would mark a significant escalation in the activities of IntelBroker, which has been linked to several high-profile cyberattacks in recent years.

Response and Investigation

Cognizant has yet to release an official statement regarding the alleged breach. However, sources close to the company indicate an internal investigation is underway.

Cybersecurity experts have been called in to assess the extent of the damage and to implement measures to prevent further unauthorized access.

The incident has also attracted the attention of regulatory bodies and law enforcement agencies.

Given the potential scale of the data leak, there is a strong likelihood that investigations will be conducted at both national and international levels.

The involvement of sensitive financial and personal data means that compliance with data protection regulations, such as GDPR and CCPA, will be scrutinized.

The cybersecurity community has reacted with a mix of concern and vigilance.

Experts are urging companies to review their security protocols and to ensure that their data protection measures are robust enough to withstand sophisticated cyberattacks.

The incident is a stark reminder of the ever-present threat posed by cybercriminals and the importance of maintaining rigorous cybersecurity practices.

“Organizations must remain vigilant and proactive in their cybersecurity efforts,” said Jane Doe, a cybersecurity analyst at SecureTech.

“This incident highlights the need for continuous monitoring and updating of security measures to protect sensitive data from increasingly sophisticated threat actors.

“As the investigation unfolds, the full impact of the alleged breach on Cognizant and its clients remains to be seen.

For now, the cybersecurity world watches closely, aware that this could be a harbinger of more significant challenges in the battle against cybercrime.

Are you from SOC/DFIR Teams? - Sign up for a free ANY.RUN account! to Analyse Advanced Malware Files

Divya

Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Recent Posts

Critical TP-Link DHCP Vulnerability Let Attackers Execute Arbitrary Code Remotely

A critical security flaw has been uncovered in certain TP-Link routers, potentially allowing malicious actors…

10 hours ago

Chinese SilkSpecter Hackers Attacking Black Friday Shoppers

SilkSpecter, a Chinese financially motivated threat actor, launched a sophisticated phishing campaign targeting e-commerce shoppers…

14 hours ago

Cybercriminals Launch SEO Poisoning Attack to Lure Shoppers to Fake Online Stores

The research revealed how threat actors exploit SEO poisoning to redirect unsuspecting users to malicious…

14 hours ago

Black Basta Ransomware Leveraging Social Engineering For Malware Deployment

Black Basta, a prominent ransomware group, has rapidly gained notoriety since its emergence in 2022…

14 hours ago

Critical Laravel Vulnerability CVE-2024-52301 Allows Unauthorized Access

CVE-2024-52301 is a critical vulnerability identified in Laravel, a widely used PHP framework for building…

16 hours ago

4M+ WordPress Websites to Attacks, Following Plugin Vulnerability

A critical vulnerability has been discovered in the popular "Really Simple Security" WordPress plugin, formerly…

17 hours ago