Modern Crypto Trader
  • Investing
  • Politics
  • Stock
  • Business
Business

Lawsuit says Clorox hackers got passwords simply by asking

by admin July 24, 2025
July 24, 2025

WASHINGTON — Bleach maker Clorox said Tuesday that it has sued information technology provider Cognizant over a devastating 2023 cyberattack, alleging that the hackers pulled off the intrusion simply by asking the tech company’s staff for employees’ passwords.

Clorox was one of several major companies hit in August 2023 by the hacking group dubbed Scattered Spider, which specializes in tricking IT help desks into handing over credentials and then using that access to lock them up for ransom. The group is often described as unusually sophisticated and persistent, but in a case filed in California state court on Tuesday, Clorox said one of Scattered Spider’s hackers was able to repeatedly steal employees’ passwords simply by asking for them.

“Cognizant was not duped by any elaborate ploy or sophisticated hacking techniques,” according to a copy of the lawsuit reviewed by Reuters. “The cybercriminal just called the Cognizant Service Desk, asked for credentials to access Clorox’s network, and Cognizant handed the credentials right over.”

Cognizant did not immediately return a message seeking comment on the suit, which was not immediately visible on the public docket of the Superior Court of Alameda County. Clorox provided Reuters with a receipt for the lawsuit from the court.

Three partial transcripts included in the lawsuit allegedly show conversations between the hacker and Cognizant support staff in which the intruder asks to have passwords reset and the support staff complies without verifying who they are talking to, for example by quizzing them on their employee identification number or their manager’s name.

“I don’t have a password, so I can’t connect,” the hacker says in one call. The agent replies, “Oh, ok. Ok. So let me provide the password to you ok?”

The 2023 hack caused $380 million in damages, Clorox said in the suit, about $50 million of which were tied to remedial costs and the rest of which were attributable to Clorox’s inability to ship products to retailers in the wake of the hack.

Clorox said the clean-up was hampered by other failures by Cognizant’s staff, including failure to de-activate certain accounts or properly restore data.

This post appeared first on NBC NEWS

previous post
Tech Taps the Brakes, Homebuilders Hit the Gas: See the Rotation on StockCharts Today
next post
Credit card startup Imprint beats big banks for Rakuten co-brand deal

Related Posts

Murdoch to provide Trump health updates in deal...

August 6, 2025

U.S. farm agency allows six more states to...

August 6, 2025

Amazon lays off over 100 employees in Wondery...

August 6, 2025

Fox One streaming service to launch ahead of...

August 6, 2025

All major Las Vegas Strip casinos are now...

August 5, 2025

Columbia Sportswear sues Columbia University, alleging trademark infringement

August 4, 2025

JPMorgan marks 1,000th branch opening since 2018 expansion...

August 1, 2025

Apple crushes Wall Street expectations as iPhone sales...

August 1, 2025

Trump ends de minimis exemption for global low-cost...

July 31, 2025

Recall warns some Celsius energy drink cans accidentally...

July 31, 2025

Stock

  • Chart Mania – 23 ATR Move in QQQ – Metals Lead 2025 – XLV Oversold – XLU Breakout – ITB Moment of Truth

    July 26, 2025
  • Momentum Leaders Are Rotating — Here’s How to Find Them

    July 25, 2025
  • S&P 500 Breaking Out Again: What This Means for Your Portfolio

    July 25, 2025
  • Is META Breaking Out or Breaking Down?

    July 24, 2025
  • A Wild Ride For the History Books: 2025 Mid-Year Recap

    July 24, 2025
  • Contact us
  • Privacy Policy
  • Terms & Conditions
  • Thank you

Copyright © 2025 moderncryptotrader.com | All Rights Reserved

Modern Crypto Trader
  • Investing
  • Politics
  • Stock
  • Business