Supply chain β›“ Supply Chain

Rostelecom Third-Party Breach (January 2025)

πŸ“… 2025-01-01 🏒 Third-party vendor
Primary Source β†—

Incident Details

Russian telecom giant Rostelecom investigates suspected cyberattack on contractor. Russia’s Rostelecom said that it was responding to a cyberattack on a contractor that helps to run its corporate website and procurement portal. A major Russian telecommunications provider, Rostelecom, said that it is investigating a suspected cyberattack on one of its contractors after hackers claimed to have leaked the company’s data. Earlier on Tuesday, the hacker group, which calls itself Silent Crow, published a data dump containing thousands of customer emails and phone numbers allegedly stolen from Rostelecom.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Third-party vendor
Supply Chain Attack
βœ… Confirmed third-party / vendor compromise

Timeline

  1. 2025-01-01 Breach occurred
  2. 2025-01-21 Publicly disclosed