Hack Notice

Hack Notice: Rise UP

Rise UP

Source
http://everestndkvzcibcje2cqxhre2hmmybl3rn2gwzwsblz7gx6uryn5rad.onion/news/rise-up
Description
companion allegedly hacked as reported by Everest ransomware with details: 1. EXECUTIVE SUMMARY The ascend Up data repository contains 82,897 files totaling 473.08 GB. content covers customer delivery, LMS implementation, workforce and learner data, training activity, CRM, Customer Success, sales, RFP/RFI material, contracts, pricing, product strategy, analytics, security, integrations, marketing, events, table reporting and internal employee documentation. cay exposure areas: - customer workforce and learner records; - training registrations, progress, scores and completion; - password-related fields, SSO and access relationships; - CRM, ARR, renewal and churn data; - B2B contacts, event attendees and leads; - contracts, pricing, RFP/RFI and security questionnaires; - internal product, analytics, base and employee information. 2. DATASET scale Files: 82,897 Stored data: 473.08 GB Largest business areas: SALES-MARKETING: 20,147 files; 211.73 GB UK: 3,019 files; 72.05 GB DELIVERY: 42,928 files; 69.02 GB MARKETING: 3,932 files; 44.43 gilbert brand & COMMUNICATIONS: 5,507 files; 34.03 gilbert PRODUCT: 6,785 files; 30.04 gigabit Major formats: PDF 30,958 PNG 13,055 JPG 6,190 PPTX 4,934 DOCX 3,883 JS 3,881 XLSX 3,289 MP4 1,941 Major storage drivers: MP4: 245.34 GB PPTX: 93.27 GB MOV: 32.18 gigabyte PDF: 16.30 GB JPG: 12.17 GB M4V: 11.99 GB AI: 10.46 GB 3. customer delivery AND PII delivery contains 42,928 files totaling 69.02 GB. Its CSM workspace contains 37,594 files totaling 50.62 GB across 123 first-level propose areas, mainly customer-specific. Confirmed person-linked data spans 26 named customer or spouse organizations, including APRIL, AFNOR DRH, Biocodex, Bouygues Telecom, Célio, Compagnons du devoir, Cromology, EFFIA, Foncia/Emeria, Groupe IGS, Mantu, MLOZ, OceanSkills, Partena Professional, PHE, PilejePlus, Promotrans, Sika, Système U, Vicat and Ville de Bruxelles. Major datasets: Système U: 85,752 learner records; 85,745 distinct usernames. Sika: 526,817 relationship rows linked to 37,862 user IDs; another 100,000-row relationship export; 3,405 session rows. Bouygues Telecom: 28,804 corporate user records; 102,044 enrollment rows. Foncia/Emeria: 14,034 distinct Employee IDs; 221,879 training-subscription rows linked to 15,741 users. PHE: 6,673 distinct matricules. Groupe IGS: 5,533 corporate users; 6,873 registration relationships. Compagnons du devoir: 3,564 source trainee IDs; 6,410 platform accounts. Vicat: 2,359 HR-enriched user records. Cromology: 2,303 employee records. PilejePlus: 2,564 distinct usernames. APRIL: 1,872 user-import records. EFFIA: 70,214 subscription records linked to 1,707 pseudonymous user IDs. Ville de Bruxelles: 1,653 workforce-style records. customer data includes names, e-mail, usernames, employee or hr identifiers, dates of birth, gender, managers, engagement dates, task and organizational fields, SSO state, account status and learning assignments. 4. LEARNER activity AND ANALYTICS User-inactivity R workspace: 4,065,976 subscription records; 875,080 user IDs; 37,044 training IDs. Active-user exports: 929,971 and 138,624 pseudonymous user records. Platform mapping export: 120,682 rows; 120,679 account names. Bouygues telecom enrollments: 102,044 rows. Foncia/Emeria training activity: 221,879 rows. EFFIA: 70,214 subscription records. Partena Professional: 6,718 validated enrollment rows. OceanSkills: 11,829 registration rows across two exports. Sika session data: 3,405 registration rows. Mantu: 1,348 training subscriptions; 2,321 path subscriptions; 1,959 evaluation rows. 5. CROSS-COMPANY touch AND CRM data lift Up Academy user audit: 16,896 rows; 15,482 distinct e-mail values. Planhat end-user UX file: 10,000 records; 9,858 distinct e-mail values. HubSpot persona workbook: 391 contact records; 250 fields. Compared user-audit, CRM and event/lead files conciliate to 17,502 distinct email identifiers. A separate media, event, giving and customer-contact batch contains 1,492 distinct e-mail identifiers. Commercial datasets: HubSpot companionship export: 648 records. HubSpot node subset: 428 records. Planhat/HubSpot customer accounts: 462 records. Fields include company, owner/CSM, lifecycle, ARR, revenue, renewal, licence volume, subscription mode, tier, churn, CRM associations, platform activity and contact information. 6. credentials AND ACCESS-RELATED data Système U: password-designated field populated in all 85,752 learner rows. Bouygues Telecom: password-designated field populated in 19,904 of 28,804 user rows. Ville de Bruxelles: password-designated theater populated in all 1,653 rows with i shared value. Groupe IGS demo workbook: 32 direct username/password pairs. Other access-related material includes SSO attributes, roles, account state, group membership, administrator rights, activation and reprieve dates, .key files, an ASC file, FileZilla configuration and token/public-key-related files. 7. SALES, CONTRACTS AND RFP/RFI SALES-MARKETING contains 20,147 files totaling 211.73 GB. Sales team RFP/RFI client material contains 10,045 files totaling 48.93 GB. content includes signed RFP/tender documents, technical and functional responses, pricing, implementation plans, certificate and privateness questionnaires, confidentiality commitments, statements of work, customer references, compliance certificates, corporate-registration records, bank rib documents, subcontractor documentation and presentation material. representative path: D:\riseup.ai\Goat learning x RU\Projet MBDA\Response to RFP\Annex 8_RFP LXP_MBDA_[RISE UP]_Personal data protection submission questionnaire.xlsx 8. PRODUCT, ANALYTICS AND certificate PRODUCT contains 6,785 files totaling 30.04 GB. PRODUCT data contains 677 files totaling 2.26 GB; Studies contains 330 files totaling 556.11 MB; Client Exports contains 46 files totaling 5.70 MB. Analytics include 64 SQL files, 44 Jupyter notebooks, 16 r scripts and 13 RData files. IT contains 408 files totaling 744.74 mb and covers data models, GDPR, lazuline and OVH security, connector specifications, SSO, HRIS, provisioning, infrastructure and interconnection documentation. 9. INTERNAL CORPORATE AND HR data Internal material includes employee CVs, diplomas, qualifications, photographs, biographies, team contacts, commission plans, hr webinars, benefits information, town Halls, leadership presentations and board/KPI material. Corporate info: 29 files; 9.01 GB. Investors board: 4 files; 51.88 MB. mail and correspondence: 48 EML files and 330 TXT files. 10. overall appraisal rise Up holds a broad internal record of SaaS learning-platform operations, customer implementation, workforce data, learner activity, commercial relationships, product development and technical integrations. The most sensitive material combines identifiable workforce records, scholar histories, password-related fields, CRM/contact data, signed commercial support and technical access or integration information.

About HackNotice and Rise UP

HackNotice is a service that notices trends and patterns in publically available data so as to identify possible data breaches, leaks, hacks, and other data incidents on behalf of our clients. HackNotice monitors data streams related to breaches, leaks, and hacks and Rise UP was reported by one of those streams. HackNotice may also have the breach date, hack date, the hacker responsible, the hacked industry, the hacked location, and any other parts of the hack, breach, or leak that HackNotice can report on for the consumers of our product.

If you are a user of Rise UP their products, services, websites, or applications and you were a client of HackNotice, monitoring for Rise UP you may have been alerted to this report about Rise UP . HackNotice is a service that provides data, information, and monitoring that helps our clients recover from and remediate data breaches, hacks, and leaks of their personal information. HackNotice provides a service that helps our clients know what to do about a hack, breach, or leak of their information.

If Rise UP had a transgress of consumer data or a data leak, then there may be additional actions that our clients should take to protect their digital identity. Data breaches, hacks, and leaks often lead to and do identity theft, account take overs, ransomware, spyware, extortion, and malware. account takeovers are often caused by credential reuse, password reuse, easily guessed passwords, and are facilitated by the sharing of billions of credentials and other customer information through data leaks, as the direct result of data breaches and hacks.

HackNotice monitors trends in publically available data that indicates tens of thousands of data breaches each year, along with billions of records from data leaks each year. On behalf of our clients, HackNotice works to monitor for hacks that guide to lower client certificate and digital identities that hold been exposed and should be considered vulnerable to attack. HackNotice works with clients to identify the extent that digital identities have been exposed and provides remediation suggestions for how to handle each type of exposure.

HackNotice monitors the hacker community, which is a network of individuals that part data breaches, hacks, leaks, malware, spyware, ransomware, and many other tools that are often used for financial fraud, account take overs, and further breaches and hacks. HackNotice monitors the hacker community specifically for breaches, hacks, and data leaks that wound consumers. HackNotice applies industry specific knowledge and advanced security practices to monitor for trends that indicate breaches, hacks, and exposed digital identities.

HackNotice also enables clients to apportion hack notices with their friend, family, and collogues to help increase consciousness around alleged hacks, breaches, or data leaks. HackNotice works to supply clients with sharable reports to help increase the security of our clients personal network. The surety of the people that our clients interact with directly impacts the layer of certificate of our clients. Increased photograph to accounts that have been taken over by hackers leads to further account submit overs through phishing, malware, and other impound techniques.

If you found this drudge observation to be helpful, then you may be interested in reading some additional hack notices such as:

zed in the media affect private information on individuals, e.g. social security numbers. red of cwo types of companies: those that have been hacked, and those that don't know they experience been hacked. The United States and the eu have imposed mandatory medical data breach notifications. Reportable b

DistributionNOW (DNOW Inc.)

Hayward Holdings

amptc.net