6月30日对Qantas的网络攻击, 使用假销售工具、AI语音骗局、暴露客户数据,
A June 30 cyberattack on Qantas, using a fake Salesforce tool and AI voice scams, exposed customer data, prompting a ransom demand and court action.
针对Qantas和其他组织的网络攻击, 通过一个假的Salesforce数据加载工具, 暴露了客户数据, 包括姓名,地址,电话号码,电子邮件, 和常旅客详细信息, 但没有金融或护照信息.
A cyberattack on Qantas and other organizations, linked to a fake Salesforce Data Loader tool, exposed customer data including names, addresses, phone numbers, emails, and frequent flyer details, but not financial or passport information.
此次泄露事件发生在 6 月 30 日,涉及人工智能驱动的语音网络钓鱼,诱骗马尼拉呼叫中心的员工安装恶意软件。
The breach, occurring on June 30, involved AI-powered voice phishing that tricked employees at a Manila-based call center into installing malicious software.
Scattered Lapsus$ 组织设定了赎金截止日期,并在要求未得到满足时开始发布数据。
The group Scattered Lapsus$ set a ransom deadline and began releasing data when demands were unmet.
销售联合会强调客户有责任确保自己配置的安全,而Qantas获得法院禁令限制公开披露,并敦促客户使用两要素认证和核实通信。
Salesforce emphasized customers' responsibility to secure their own configurations, while Qantas obtained a court injunction to limit public disclosure and urged customers to use two-factor authentication and verify communications.
该事件与 8 月份涉及 Salesforce 集成软件的另一起违规事件是分开的,该漏洞可能影响了数百家公司。
The incident is separate from another August breach involving Salesforce integration software that may have affected hundreds of firms.
两者都正在调查之中。
Both are under investigation.