European space agency confirms ‘external servers’ breached in cyberattack

  • ESA confirmed cyberattack affecting external servers used for collaborative engineering activities
  • Hacker “888” claims theft of 200 GB data, including source code, tokens, and configs
  • Incident follows last year’s ESA web shop breach involving a credit card skimmer

The European Space Agency (ESA) was hit with a cyberattack earlier this week and apparently lost sensitive data in the process. The agency confirmed the news on X, saying it is currently investigating the incident:

“ESA is aware of a recent cybersecurity issue involving servers located outside the ESA corporate network,” the tweet reads. “We have initiated a forensic security analysis—currently in progress—and implemented measures to secure any potentially affected devices.”

The agency stressed that the compromised servers were “outside the ESA corporate network”, suggesting that they contained data that cannot be labeled as highly sensitive.

“Our analysis so far indicates that only a very small number of external servers may have been impacted,” the tweet further explains. “These servers support unclassified collaborative engineering activities within the scientific community. All relevant stakeholders have been informed, and we will provide further updates as soon as additional information becomes available.”

200 GB worth of data

At the same time, Security Week reports that a cybercriminal with the alias ‘888’ posted a new thread on the infamous BreachForums website, taking responsibility for the breach which, they say, happened on December 18.

As per the announcement, ESA lost 200 GB worth of data, including some from private Bitbucket repositories. In its report, CyberInsider lists these types of files as being nabbed:

  • Source code from private Bitbucket repositories
  • CI/CD pipeline configurations
  • API and access tokens
  • Internal documentation
  • SQL database files
  • Terraform infrastructure code
  • Hardcoded credentials and configuration files

They also posted a few screenshots to prove their claims, but at press time, no one analyzed the samples to see if they are authentic or not.

This is not the first time ESA was struck by hackers, since roughly a year ago, the agency’s website was compromised with a credit card skimmer. Back then, researchers from Sansec spotted a malicious script on ESA’s web shop, and determined it created a fake Stripe payment page at checkout, where it collected customer information.

Payment data, including sensitive credit card information, was also being gathered.

Via Security Week

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

Read more @ TechRadar

Latest posts

The AirPods are Tim Cook’s most underrated achievement

The AirPods changed the direction of true wireless earbuds and became Apple’s most important accessory. | Photography by Amelia Holowaty Krales / The Verge Apple...

Framework is building a better couch keyboard because everyone hates the Logitech one

If you have a wireless keyboard with a touchpad that lets you control your PC from across the room, chances are it's a Logitech...

Framework’s first eGPUs turn its laptop into a desktop PC

Remember when Framework made the first laptop where you can easily upgrade its entire internal video card in three minutes flat? The company's getting...

Framework announces Laptop 13 Pro, ‘the MacBook Pro for Linux users’

Gorilla arm who? | Image: Framework Every time we review a Framework laptop, we find familiar pros and cons. They're truly upgradable, incredibly repairable, but...

X makes it 1,900 percent more expensive to post links

Posting links to X through custom social media software just got a lot more expensive. On Monday, X significantly increased how much it costs...

Framework’s Laptop 13 Pro launch event

Framework CEO Nirav Patel is showing off his company’s latest modular, repairable laptops in San Francisco today. The headliner is the new Laptop 13...

OpenAI’s updated image generator can now pull information from the web

An image generated by ChatGPT Images 2.0. | Image: OpenAI OpenAI is rolling out the latest version of its AI-powered image generator with new "thinking...

AI backlash is coming for elections

Ask Americans how they feel about AI and most say they have concerns. Communities have mounted resistance to data center projects, stalling them across...

Tim Cook was an innovator — just not the Jobs kind

The Cook era comes to a close. | Image: Cath Virginia / The Verge, Getty Images Under Steve Jobs, Apple released the groundbreaking products that...

ISS astronauts are in the middle of a tech overhaul

Even astronauts need to level up their laptops once in a while - including the crew of Expedition 74 on board the ISS, which...