UN aviation agency ‘actively investigating’ cybercriminal’s claimed data breach

Avatar

The U.N.’s International Civil Aviation Organization (ICAO) announced late on Monday that it was “actively investigating reports of a potential information security incident” following a criminal claim to have breached the agency.

According to ICAO’s statement, the incident was “allegedly linked to a threat actor known for targeting international organizations.”

It follows the account “Natohub” claiming on the hacking forum BreachForums 2 — the successor to a site seized by the FBI in 2023 — to have compromised 42,000 documents from ICAO containing personal data.

The same account, which was registered only six months ago, had last month claimed to have accessed the personal data of 14,000 delegates to the United Nations.

According to Natohub, the ICAO personal records include full names, dates of birth, physical and email addresses, phone numbers, and details about the individuals’ education history and employment.

In its statement, the Montreal-based ICAO said: “We take this matter very seriously and have implemented immediate security measures while conducting a comprehensive investigation. Further information will be provided once our preliminary investigation is complete.”

CybercrimeNewsNews BriefsGovernmentIndustry
Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

No previous article

No new articles

Alexander Martin

is the UK Editor for Recorded Future News. He was previously a technology reporter for Sky News and is also a fellow at the European Cyber Conflict Research Initiative.

 

Total
0
Shares
Previous Post

Researchers Uncover Major Security Flaw in Illumina iSeq 100 DNA Sequencers

Next Post

Pig butchering victim sues banks for allowing scammers to open accounts

Related Posts

Opera Browser Fixes Big Security Hole That Could Have Exposed Your Information

A now-patched security flaw in the Opera web browser could have enabled a malicious extension to gain unauthorized, full access to private APIs. The attack, codenamed CrossBarking, could have made it possible to conduct actions such as capturing screenshots, modifying browser settings, and account hijacking, Guardio Labs said. To demonstrate the issue, the company said it managed to publish a
Avatar
Read More

THN Recap: Top Cybersecurity Threats, Tools, and Practices (Nov 04 – Nov 10)

⚠️ Imagine this: the very tools you trust to protect you online—your two-factor authentication, your car’s tech system, even your security software—turned into silent allies for hackers. Sounds like a scene from a thriller, right? Yet, in 2024, this isn’t fiction; it’s the new cyber reality. Today’s attackers have become so sophisticated that they’re using our trusted tools as secret pathways,
Avatar
Read More