Hacker Group LAPSUS$ Claims Alleged AstraZeneca Data Breach
2026-03-21T08:51:43Z•d79cb047525277f6dcd14cd163eeca5da97a39c18bacd359e9bed88af2193103
.net-aotad-fraudastrazenecaclaude-aiclaudy-dayclickfixcloud-configscredential-theftdata-breachdrive-mappingide-extensionidentity-theftjavascriptlapsus$leaked-credentialsmalwaremalware-evasionnon-human-identity-theftsocial-engineeringsolanaspycloudsupply-chainwindsurfzoom-scam
What happened
Multiple security stories: LAPSUS$ claims a breach of AstraZeneca and is offering alleged source code, credentials, cloud configuration files and employee data samples for sale. Researchers also reported several active malware and social‑engineering campaigns: a realistic JavaScript-based fake Zoom meeting invite that spreads Windows malware; a malicious Windsurf IDE extension that leverages the Solana blockchain to steal developer credentials; and a ClickFix scam that tricks users into mapping attacker-controlled drives and loading malware. Additional items include the “Claudy Day” ad‑based a
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- hackread
- Record identifier
- d79cb047525277f6dcd14cd163eeca5da97a39c18bacd359e9bed88af2193103
- Enrichment time
- 2026-03-21T08:51:43Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.