• About Us
  • Advertise
  • Contact Us
  • DMCA
  • Follow on Google News
Monday, September 1, 2025
  • Login
Pioneer News
ADVERTISEMENT
  • Home
  • India
    • National
    • State News
  • Education
  • Business
  • World
  • Entertainment
  • Lifestyle
    • Health & Fitness
    • Travel
    • Fashion & Beauty
    • Food
  • Tech
    • App News
    • Gadgets
  • Auto
  • Others
    • Sports
    • Finance/Money
    • Agriculture
    • Science
    • Astrology
    • Social Work
    • Press Release
No Result
View All Result
  • Home
  • India
    • National
    • State News
  • Education
  • Business
  • World
  • Entertainment
  • Lifestyle
    • Health & Fitness
    • Travel
    • Fashion & Beauty
    • Food
  • Tech
    • App News
    • Gadgets
  • Auto
  • Others
    • Sports
    • Finance/Money
    • Agriculture
    • Science
    • Astrology
    • Social Work
    • Press Release
No Result
View All Result
Pioneer News
No Result
View All Result
Home Business

Postmortem of Uber’s Social Engineering Hack

Pioneer News by Pioneer News
September 28, 2022
in Business
0
Postmortem of Uber’s Social Engineering Hack

CloudSEK’s contextual AI based digital risk protection platform discovered a threat actor claiming to have compromised Uber, the American mobility service provider. Uber has confirmed the above claims and responded to the incident by stating that it is in contact with law enforcement agencies. Social engineering was employed as an initial attack vector by the threat actor.

The threat actor was able to compromise an employee’s HackerOne account to access vulnerability reports associated with Uber. To demonstrate the legitimacy of the claims, the actor has posted unauthorized messages on the HackerOne page of the company. Moreover, the attacker has also shared several screenshots of Uber’s internal environment including their GDrive, VCenter, sales metrics, Slack, and the EDR portal.

RelatedPosts

Antonio Bernard Ma-at, Multi-Awarded Literary Visionary, Global Media Voice, Your Fellow Dreamer, Filipino author, anthologist, editor, international journalist

Antonio Bernard Ma-at: A Multi-Awarded Literary Visionary and Global Media Voice

August 30, 2025
From Tier 2 city in Odisha to Global: Vijay  Nayak Launches Kyoren Worldwide, an AI Marketing Agency Turning Leads into Booked Calls

From Tier 2 city in Odisha to Global: Vijay  Nayak Launches Kyoren Worldwide, an AI Marketing Agency Turning Leads into Booked Calls

August 29, 2025

“The Uber Hack is a classic case of failure on multiple levels where Over privilege or privilege mismanagement plays a pivotal role. Eliminating privilege escalation paths or monitoring for access changes in accounts can be initial answers for mitigation, apart from Darkweb and surface web monitoring”, says Abhinav Pandey, Cyber Threat Researcher, Cloudsek.

ADVERTISEMENT

The actor plausibly employed social engineering techniques as an initial attack vector to compromise Uber’s infrastructure.

After attaining access to multiple credentials, the actor exploited the compromised victim’s VPN access to:

  • Pivot and escalate privileges inside the internal network
  • Scan the internal network(Intranet) for access

Subsequently, the actor gained access to an internal network(Intranet) *.corp.uber.com where the actor got access to a directory, plausibly with a name “share”, which provided the actor with numerous PowerShell scripts that contained admin credentials to the privileged access management system (Thycotic). This enabled the actor with complete access to multiple services of the entity such as Uber’s Duo, OneLogin, AWS, Gsuite Workspace, etc.

This hack had a tremendous impact on Uber starting from the Obfuscation of the application code, hindering the usability of the application, leaked credentials, and access could facilitate multiple account takeovers and leaking of sensitive and critical information of the entity. Equipping malicious actors with details required to launch sophisticated ransomware attacks, exfiltrate data, and maintain persistence, not to mention the reputational damage for Uber.

Mitigation Steps include training employees against social engineering attacks and techniques, implementing a strong password policy and enabling MFA across logins, creating specialized user groups with minimum privileges, closing unused ports, limiting file access, patching vulnerable, and exploitable endpoints, preventing private keys from being shared unencrypted in messaging systems like Slack or WhatsApp.

Singapore headquartered CloudSEK is a contextual AI (Artificial Intelligence) company, founded in 2015, by cybersecurity expert Rahul Sasi, with the aim to construct a future where intelligent machines can emulate human cognition to predict cyber threats even before they occur.

CloudSEK’s central proposition is to leverage AI to build a rapid and reliable detection, analysis, and alert system that offers swift detection across internet sources, precision analysis of threats, and prompt resolution with minimal human intervention.

CloudSEK offers the power of Cyber Crime monitoring, Brand Monitoring, Attack Surface monitoring, and Supply Chain Intelligence to give context to customers’ digital risks. CloudSEK’s single unified dashboard allows customers to triage and visualize all their digital threats in one place. CloudSEK also offers workflows and integrations to manage and remediate the identified threats.

Tags: American mobility service providerAttack Surface monitoringBrand MonitoringCloudSEKcontextual AI (Artificial Intelligence) companyCyber Crime monitoringcybersecurity expert Rahul Sasidigital risk protection platformHackerOneSupply Chain IntelligenceUberUber Hack
ShareTweetSharePinSendShareShareSend
ADVERTISEMENT
Pioneer News

Pioneer News

Related Posts

Antonio Bernard Ma-at, Multi-Awarded Literary Visionary, Global Media Voice, Your Fellow Dreamer, Filipino author, anthologist, editor, international journalist
Business

Antonio Bernard Ma-at: A Multi-Awarded Literary Visionary and Global Media Voice

by Pioneer News
August 30, 2025
From Tier 2 city in Odisha to Global: Vijay  Nayak Launches Kyoren Worldwide, an AI Marketing Agency Turning Leads into Booked Calls
Business

From Tier 2 city in Odisha to Global: Vijay  Nayak Launches Kyoren Worldwide, an AI Marketing Agency Turning Leads into Booked Calls

by Pioneer News
August 29, 2025
Uttarayan Group Wins ‘Best Stall’ at AREIDA Expo 2025, North East India’s Largest Real Estate Event
Business

Uttarayan Group Wins ‘Best Stall’ at AREIDA Expo 2025, North East India’s Largest Real Estate Event

by Pioneer News
August 26, 2025
Cynextgen Launches Ambitious “Indian Marketing Blueprint” to Transform Digital Marketing Across India’s 29 States and 7 Union Territories
Business

Cynextgen Launches Ambitious “Indian Marketing Blueprint” to Transform Digital Marketing Across India’s 29 States and 7 Union Territories

by Pioneer News
August 19, 2025
Placy: Agra Entrepreneur Shivam Saxena Launches India’s First AI Coaching Platform to Train 1 Lakh Indians by 2027
Business

Placy: Agra Entrepreneur Shivam Saxena Launches India’s First AI Coaching Platform to Train 1 Lakh Indians by 2027

by Pioneer News
August 19, 2025
Next Post
Cycle Pure launches pujaroom.com to provide a premium puja experience

Cycle Pure launches pujaroom.com to provide a premium puja experience

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • Trending
  • Comments
  • Latest
Things to Learn from The Weekly with ChoubeyJi

Things to Learn from The Weekly with ChoubeyJi

February 25, 2022
Oral Asformas – The Digital Marketing Entrepreneur who lit up his life through his Never-Back-Down attitude

Oral Asformas – The Digital Marketing Entrepreneur who lit up his life through his Never-Back-Down attitude

April 21, 2022
KGF Star Yash in Conversation with Anchor Anupam Anand

KGF Star Yash in Conversation with Anchor Anupam Anand

March 1, 2022
Choubey Ji is back with Season 2

Choubey Ji is back with Season 2

December 30, 2022

Changa Video sharing app crosses 2 million on play store

0

World’s first DeepUV Air Sanitizer, launched by Indian startup Dokat Inc.

0

Japan’s tech start-ups bitgrit and Atrae rolls out professional ‘matching’ app in India offering jobs in India

0

Surat’s company invents – low-cost,high-end ventilator in support of the Aatmanirbhar Bharat Abhiyan

0
Over 500 Participate in Wheelchair Sports & Cultural Program & Inclusive Health Checkup camp at NCDC for Spinal Cord Injury Day & National Injury Prevention Week 2025

Over 500 Participate in Wheelchair Sports & Cultural Program & Inclusive Health Checkup camp at NCDC for Spinal Cord Injury Day & National Injury Prevention Week 2025

September 1, 2025
Antonio Bernard Ma-at, Multi-Awarded Literary Visionary, Global Media Voice, Your Fellow Dreamer, Filipino author, anthologist, editor, international journalist

Antonio Bernard Ma-at: A Multi-Awarded Literary Visionary and Global Media Voice

August 30, 2025
Shivtarang: Sound Healing India’s Pioneer in Aerial Sound Bath and Holistic Wellness

Shivtarang: Sound Healing India’s Pioneer in Aerial Sound Bath and Holistic Wellness

August 30, 2025
From Tier 2 city in Odisha to Global: Vijay  Nayak Launches Kyoren Worldwide, an AI Marketing Agency Turning Leads into Booked Calls

From Tier 2 city in Odisha to Global: Vijay  Nayak Launches Kyoren Worldwide, an AI Marketing Agency Turning Leads into Booked Calls

August 29, 2025

Categories

  • Agriculture
  • App News
  • Astrology
  • Auto
  • Business
  • Education
  • Entertainment
  • Fashion & Beauty
  • Finance/Money
  • Food
  • Gadgets
  • Health & Fitness
  • Lifestyle
  • National
  • Photography
  • Politics
  • Press Release
  • Religion
  • Science
  • Social Work
  • Sports
  • State News
  • Tech
  • Travel
  • Uncategorized
  • World
ADVERTISEMENT

Pioneer News, digital news and story platform bring you the news, articles, stories, and opinions on the latest happenings worldwide covering various sectors like nation, politics, and governance, social sector, review, foreign affairs, defence and security, latest review, lifestyle, entertainment, sports, technology, auto sectors, education, business and start-ups updates, Agriculture, Science, finance, money, food, and culture, etc.

Categories

  • Agriculture
  • App News
  • Astrology
  • Auto
  • Business
  • Education
  • Entertainment
  • Fashion & Beauty
  • Finance/Money
  • Food
  • Gadgets
  • Health & Fitness
  • Lifestyle
  • National
  • Photography
  • Politics
  • Press Release
  • Religion
  • Science
  • Social Work
  • Sports
  • State News
  • Tech
  • Travel
  • Uncategorized
  • World
September 2025
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
2930  
« Aug    

Recent News

  • Over 500 Participate in Wheelchair Sports & Cultural Program & Inclusive Health Checkup camp at NCDC for Spinal Cord Injury Day & National Injury Prevention Week 2025
  • Antonio Bernard Ma-at: A Multi-Awarded Literary Visionary and Global Media Voice
  • Shivtarang: Sound Healing India’s Pioneer in Aerial Sound Bath and Holistic Wellness
  • From Tier 2 city in Odisha to Global: Vijay  Nayak Launches Kyoren Worldwide, an AI Marketing Agency Turning Leads into Booked Calls
  • India’s Dengue Hotspots: PharmEasy Report Shows Karnataka, Tamil Nadu, and Maharashtra Leading the Charts
  • About Us
  • Advertise
  • Contact Us
  • DMCA
  • Follow on Google News

© 2021 Pioneer News.

No Result
View All Result
  • Home
  • India
    • National
    • State News
  • Education
  • Business
  • World
  • Entertainment
  • Lifestyle
    • Health & Fitness
    • Travel
    • Fashion & Beauty
    • Food
  • Tech
    • App News
    • Gadgets
  • Auto
  • Others
    • Sports
    • Finance/Money
    • Agriculture
    • Science
    • Astrology
    • Social Work
    • Press Release

© 2021 Pioneer News.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In