• About Us
  • Advertise
  • Contact Us
  • DMCA
  • Privacy Policy
  • Follow on Google News
Sunday, March 29, 2026
India Influencive
No Result
View All Result
  • Login
  • Home
  • Business
  • India
    • National
    • State News
  • Education
  • World
  • Business
  • Entertainment
  • Lifestyle
    • Health & Fitness
    • Fashion & Beauty
    • Travel
    • Photography
    • Food
  • Tech
    • App News
    • Gadgets
  • Auto
  • Others
    • Sports
    • Agriculture
    • Science
    • Astrology
    • Finance/Money
    • Press Release
    • Social Work
    • Religion
  • Home
  • Business
  • India
    • National
    • State News
  • Education
  • World
  • Business
  • Entertainment
  • Lifestyle
    • Health & Fitness
    • Fashion & Beauty
    • Travel
    • Photography
    • Food
  • Tech
    • App News
    • Gadgets
  • Auto
  • Others
    • Sports
    • Agriculture
    • Science
    • Astrology
    • Finance/Money
    • Press Release
    • Social Work
    • Religion
No Result
View All Result
Morning News
No Result
View All Result
Home Business

Postmortem of Uber’s Social Engineering Hack

India Influencive by India Influencive
4 years ago
in Business
Reading Time: 3 mins read
0
Postmortem of Uber’s Social Engineering Hack
Share on FacebookShare on Twitter

CloudSEK’s contextual AI based digital risk protection platform discovered a threat actor claiming to have compromised Uber, the American mobility service provider. Uber has confirmed the above claims and responded to the incident by stating that it is in contact with law enforcement agencies. Social engineering was employed as an initial attack vector by the threat actor.

The threat actor was able to compromise an employee’s HackerOne account to access vulnerability reports associated with Uber. To demonstrate the legitimacy of the claims, the actor has posted unauthorized messages on the HackerOne page of the company. Moreover, the attacker has also shared several screenshots of Uber’s internal environment including their GDrive, VCenter, sales metrics, Slack, and the EDR portal.

READ ALSO

Pet Parenting Made Simple: A Beginner’s Guide to Happy Pets

Pet Parenting Made Simple: A Beginner’s Guide to Happy Pets

March 23, 2026
Spin Off Events & Media Solution: Building Experiences That Go Beyond Events

Spin Off Events & Media Solution: Building Experiences That Go Beyond Events

March 23, 2026

“The Uber Hack is a classic case of failure on multiple levels where Over privilege or privilege mismanagement plays a pivotal role. Eliminating privilege escalation paths or monitoring for access changes in accounts can be initial answers for mitigation, apart from Darkweb and surface web monitoring”, says Abhinav Pandey, Cyber Threat Researcher, Cloudsek.

The actor plausibly employed social engineering techniques as an initial attack vector to compromise Uber’s infrastructure.

After attaining access to multiple credentials, the actor exploited the compromised victim’s VPN access to:

  • Pivot and escalate privileges inside the internal network
  • Scan the internal network(Intranet) for access

Subsequently, the actor gained access to an internal network(Intranet) *.corp.uber.com where the actor got access to a directory, plausibly with a name “share”, which provided the actor with numerous PowerShell scripts that contained admin credentials to the privileged access management system (Thycotic). This enabled the actor with complete access to multiple services of the entity such as Uber’s Duo, OneLogin, AWS, Gsuite Workspace, etc.

This hack had a tremendous impact on Uber starting from the Obfuscation of the application code, hindering the usability of the application, leaked credentials, and access could facilitate multiple account takeovers and leaking of sensitive and critical information of the entity. Equipping malicious actors with details required to launch sophisticated ransomware attacks, exfiltrate data, and maintain persistence, not to mention the reputational damage for Uber.

Mitigation Steps include training employees against social engineering attacks and techniques, implementing a strong password policy and enabling MFA across logins, creating specialized user groups with minimum privileges, closing unused ports, limiting file access, patching vulnerable, and exploitable endpoints, preventing private keys from being shared unencrypted in messaging systems like Slack or WhatsApp.

Singapore headquartered CloudSEK is a contextual AI (Artificial Intelligence) company, founded in 2015, by cybersecurity expert Rahul Sasi, with the aim to construct a future where intelligent machines can emulate human cognition to predict cyber threats even before they occur.

CloudSEK’s central proposition is to leverage AI to build a rapid and reliable detection, analysis, and alert system that offers swift detection across internet sources, precision analysis of threats, and prompt resolution with minimal human intervention.

CloudSEK offers the power of Cyber Crime monitoring, Brand Monitoring, Attack Surface monitoring, and Supply Chain Intelligence to give context to customers’ digital risks. CloudSEK’s single unified dashboard allows customers to triage and visualize all their digital threats in one place. CloudSEK also offers workflows and integrations to manage and remediate the identified threats.

Tags: American mobility service providerAttack Surface monitoringBrand MonitoringCloudSEKcontextual AI (Artificial Intelligence) companyCyber Crime monitoringcybersecurity expert Rahul Sasidigital risk protection platformHackerOneSupply Chain IntelligenceUberUber Hack
Previous Post

Dr. Geomcy George – Top emerging healthcare leader who is making a difference in the lives of many

Next Post

Cycle Pure launches pujaroom.com to provide a premium puja experience

Related Posts

Pet Parenting Made Simple: A Beginner’s Guide to Happy Pets
Business

Pet Parenting Made Simple: A Beginner’s Guide to Happy Pets

March 23, 2026
Spin Off Events & Media Solution: Building Experiences That Go Beyond Events
Business

Spin Off Events & Media Solution: Building Experiences That Go Beyond Events

March 23, 2026
AI-Driven ICT and Smart Innovations are showcased by Taiwan Excellence at Convergence India Expo 2026
Business

AI-Driven ICT and Smart Innovations are showcased by Taiwan Excellence at Convergence India Expo 2026

March 18, 2026
From Workshop Floors to a Tech-Driven Vision: Yash Harish Jain Builds Archeva Homes to Transform India’s Interior Design Ecosystem
Business

From Workshop Floors to a Tech-Driven Vision: Yash Harish Jain Builds Archeva Homes to Transform India’s Interior Design Ecosystem

March 16, 2026
THYNE Lunches AI-Enabled Personalized Jewellery Platform in February 2026, Redefining Custom Jewellery in India
Business

THYNE Lunches AI-Enabled Personalized Jewellery Platform in February 2026, Redefining Custom Jewellery in India

March 3, 2026
Mumbai Coworking 2.0 Launches Premium Boardroom and Night Shift Workspace in Andheri West
Business

Mumbai Coworking 2.0 Launches Premium Boardroom and Night Shift Workspace in Andheri West

March 2, 2026
Next Post
Cycle Pure launches pujaroom.com to provide a premium puja experience

Cycle Pure launches pujaroom.com to provide a premium puja experience

Diquery Digital, has been recognised by CustomFit. ai as one of the Top 20 Digital Marketing Agencies in India

Diquery Digital, has been recognised by CustomFit. ai as one of the Top 20 Digital Marketing Agencies in India

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

POPULAR NEWS

Best Celebrity Stylist in Mumbai - "Sugandha Sood"

Best Celebrity Stylist in Mumbai – “Sugandha Sood”

November 4, 2022
Mr. Yash Mane is an ideal man who cherishes humanity

Mr. Yash Mane is an ideal man who cherishes humanity

March 21, 2022
Shreyaa Sumi -International Model is conferred with a Honorary Doctorate from USA University

Shreyaa Sumi -International Model is conferred with a Honorary Doctorate from USA University

May 9, 2022
Modi Government working for developing entrepreneurship environment for backward class of the country: Dr K Laxman (National President OBC Morcha BJP)

Modi Government working for developing entrepreneurship environment for backward class of the country: Dr K Laxman (National President, OBC Morcha BJP)

May 12, 2022
Get another step closer to achieving your fitness goals with the MultiFit Gyms ‘Transform Yourself’ Program

Get another step closer to achieving your fitness goals with the MultiFit Gyms ‘Transform Yourself’ Program

August 29, 2022

EDITOR'S PICK

Biolume Skin Science Ushers in a New Era of Salon-Centric Skincare

Biolume Skin Science Ushers in a New Era of Salon-Centric Skincare

June 6, 2024
Victory EV International Ltd. Launches New L5 Electric Auto Series

Victory EV International Ltd. Launches New L5 Electric Auto Series

August 13, 2024
India’s Image is improving in the world – Union Minister Rajiv Chandrashekhar

India’s Image is improving in the world – Union Minister Rajiv Chandrashekhar

November 12, 2022
GAIL (India) Ltd. Invests in Fuel Aggregator Platform Nawgati under its PANKH Initiative

GAIL (India) Ltd. Invests in Fuel Aggregator Platform Nawgati under its PANKH Initiative

January 4, 2024

India Influencive, digital news and story platform bring you the news, articles, stories, and opinions on the latest happenings worldwide covering various sectors like nation, politics, and governance, social sector, review, foreign affairs, defence and security, latest review, lifestyle, entertainment, sports, technology, auto sectors, education, business and start-ups updates, Agriculture, Science, finance, money, food, and culture, etc.

Follow us

Categories

  • Agriculture
  • App News
  • Astrology
  • Auto
  • Business
  • Education
  • Entertainment
  • Fashion & Beauty
  • Finance/Money
  • Food
  • Gadgets
  • Health & Fitness
  • Lifestyle
  • National
  • Photography
  • Politics
  • Press Release
  • Religion
  • Science
  • Social Work
  • Sports
  • State News
  • Tech
  • Travel
  • World

Recent Posts

  • Ooka Launches Fdz, B2B Food Aggregator to Transform Corporate Dining Across India
  • Hot Sauce is Having a Moment in India: And This Mother-Daughter Duo is Leading the Charge
  • Loan Resolve Expands Across India Amid Rising Demand for Debt Resolution
  • Hashtag Eyewear Sets New Standards in Youth-Centric Eyewear Fashion

Tags

actor Artificial intelligence author Bangalore Bengaluru BRICS CCI Chennai COVID-19 Cryptocurrency CSIR Delhi digital marketing DST Education entrepreneur Fairplay Ginny Kapoor Gujarat Gurugram Hi life Exhibition Hyderabad India's Most Prominent Pageant Indian Institute of Technology influencer Influencerquipo jewellery Kingston Technology K Raheja Corp Homes LANXESS memory products and technology solutions Mr. Gagandeep Kapoor Mrs.INDIA Galaxy Mrs.INDIA Galaxy 2022 Mumbai Music Industry National Pageant Mrs.INDIA Galaxy 2022 producer Pune real estate Shan Se Entertainment Shantanu Bhamare Surat technology solutions Vibrant Concepts women empowerment
  • About Us
  • Advertise
  • Contact Us
  • DMCA
  • Privacy Policy
  • Follow on Google News

© 2021 India Influencive .

No Result
View All Result
  • About Us
  • Advertise
  • Contact Us
  • DMCA
  • Home
  • Privacy Policy

© 2021 India Influencive .

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In