Watermark

Informazioni Incidente

ID: 32206 12-05-2026 09:50:46
Organizzazione

NorthWest Handling Systems

Gruppo Criminale

aurora

Hash RF
61eb87712fd005d8fbee6999d72ed36f77bbb3b8fbeea7c74f59cef48128cd2a
Data Rilevamento 12-05-2026 09:50:46
Località Obiettivo USA
Dominio Obiettivo
nwhs.com CTI
Settore Economico Logistics
Dati Pubblicati N/D
Descrizione
[warehouse] NorthWest Handling Systems — a 55-year-old forklift and warehouse equipment company headquartered in Renton, Washington, with branches across WA, OR, and AK. The dump is the entire corporate file share going back to 1988. 337,000+ files spanning every branch, every department, every era of the company. It includes: Plaintext credit card numbers in an Excel spreadsheet literally titled “C.O.D. info (CREDIT CARD INFO).xlsx” — stored at the root of the file server, unencrypted, for years. Social Security numbers and Taxpayer IDs on W-9 forms and certified payroll documents for government-contract work (USPS, Oregon DHS, public schools). 3+ years of plaintext passwords for Target Corporation’s vendor portal (TARS), stored in Word documents titled “TARGET PASSWORD & SECURITY QUESTIONS.” Each password rotation was saved as a new file. Home Depot Maximo DC billing credentials — plaintext, in a Word document, enabling fraudulent invoicing against a Fortune 50 company. Albertsons/Safeway Corrigo facility-management portal credentials — again, plaintext in a .docx file. 33 GB of customer warehouse CAD files — facility layouts, equipment placement, security-zone dimensions, and fire-protection drawings for approximately 50–200 companies including Nike, Google, Costco, and Umpqua Bank. 24,669 rows of fixed-asset data in ExportFile.csv — the complete equipment inventory, revealing the company’s financial structure, depreciation schedules, and capital-investment history. Corporate bank routing and account numbers (ACH authorization forms), employee direct-deposit details, time cards, disciplinary records, accident reports, and decades of invoices.

Stai cercando un corso su Dark Web e Cyber Threat intelligence (CTI)?

Se vuoi comprendere a fondo le dinamiche del Dark Web e le minacce di sicurezza informatica, non perdere il corso "DarkWeb & Cyber Threat Intelligence" della Red Hot Cyber Academy. Puoi accedere al corso in modalità e-learning oppure attraverso live-class interattive con professore online. Inoltre, il corso non finisce con la certificazione, ma all'interno del laboratorio di intelligence DarkLab. Scrivi alla Red Hot Cyber Academy per maggiori dettagli.

Red Hot Cyber Academy

Formazione specializzata in Cyber Threat Intelligence