The company acted on a court order and collaborated with Cloudflare to seize RaccoonO365’s infrastructure, which was used to steal credentials from organizations in 94 countries.
A recent wave of attacks targeting SonicWall customers has researchers and authorities on alert. Many victim organizations had misconfigurations in their systems.
The company said a threat actor accessed and snooped around its account for months, then stole OAuth tokens for Drift integrations from its cloud environment.
Image showing the Colonial Pipeline Houston Station facility in Pasadena, Texas (Photo by Francois PICARD / AFP) (Photo by FRANCOIS PICARD/AFP via Getty Images)