Figure Data Breach Affects Nearly 1 Million User Accounts
Figure Technology Solutions Data Breach Exposes Sensitive Information
A recent data breach at Figure Technology Solutions, a US-based blockchain fintech firm, has exposed sensitive information from nearly 1 million accounts.
Details of the Breach
The breach, which was initially reported to have affected only a limited number of files, was carried out by the ShinyHunters group using social engineering tactics against an employee.
ShinyHunters’ History of Attacks
ShinyHunters, a group known for its voice phishing campaigns, had previously listed Figure Technology Solutions as one of its targets, along with 2.5 GB of data purportedly belonging to loan applicants.
- CrowdStrike
- Betterment
- SoundCloud
- Match Group, which owns popular dating services such as Tinder, Hinge, OkCupid, and Meetic
Method of Attack
The breach at Figure Technology Solutions is the latest in a series of attacks carried out by ShinyHunters, which has been targeting companies using Okta, Google, and Microsoft single sign-on accounts.
The group’s tactics involve using social engineering to trick employees into divulging sensitive information, which is then used to gain unauthorized access to company systems.
Importance of Robust Security Measures
The exposure of sensitive information from nearly 1 million accounts at Figure Technology Solutions highlights the ongoing threat posed by social engineering attacks and the importance of implementing robust security measures to protect against such threats.
