Uber reveals more on recent hack, says Lapsus$ is to blame

Uber has shared more details on its recent data breach, sharing details on how it happened, what the impact was, and who it thinks was (most likely) to blame.

In a security update (opens in new tab), Uber said a threat actor purchased an Uber EXT contractor’s login credentials from the dark web, and managed to log into the account after the contractor accepted a two-factor login request from the secondary endpoint

