Incident Summary:Victim: Wynn ResortsThreat Actor: ShinyHuntersImpact: Employee data accessedClaim: 800k+ PII recordsAlleged vector: Oracle PeopleSoft environment
Uncategorized
1
Posts
1
Posters
2
Views
-
Incident Summary:
Victim: Wynn Resorts
Threat Actor: ShinyHunters
Impact: Employee data accessed
Claim: 800k+ PII records
Alleged vector: Oracle PeopleSoft environmentOperational notes:
• Incident response + external experts engaged
• Leak site entry removed
• Credit monitoring deployedShinyHunters TTPs historically include:
– Vishing against SSO
– OAuth token abuse
– Device code phishing targeting Entra / identity ecosystems
– SaaS data exfiltration
Identity is the pivot point.Follow us for tactical threat briefings.
Share detection or IAM hardening insights below.
#Infosec #ThreatIntel #IdentitySecurity #SSO #MFA #ShinyHunters #CyberExtortion #DataProtection #IAM #SOC #BlueTeam #SecurityEngineering
-
R relay@relay.infosec.exchange shared this topic