Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Scania Insurance Data Stolen In Partner Hack

June 18, 2025
Reading Time: 3 mins read
in Incidents
Scania Insurance Data Stolen In Partner Hack

Swedish heavy vehicle manufacturer Scania has now confirmed that threat actors successfully breached its insurance and financial services division. A member of the Volkswagen Group, Scania is a major global producer of large trucks, buses, and heavy industrial vehicle engines. Earlier this month, a threat actor going by the name “hensi” claimed a cyberattack on the company’s insurance website. The threat actor wrote in a post that they were selling the full attachment of all the files stolen from Scania insurance. The company, which employs over 59,000 people worldwide, has an annual revenue of more than $20.5 billion, a major firm.

In a statement to BleepingComputer, Scania confirmed that various threat actors had indeed breached its network and exfiltrated sensitive data. A Scania spokesperson said, “We can confirm there has been a security related incident in the application ‘insurance.scania.com’.” They explained that on the 28th and 29th of May, a perpetrator used legitimate external user credentials to gain access. Their current assumption is that the credentials used by the perpetrator were leaked by some kind of password stealer malware. Using the compromised account, documents that were directly related to various insurance claims were then illegally downloaded by the threat actor.

Following this successful data breach, the threat actor then used an @proton.me email address to directly extort company employees.

Early on May 30th, the attacker sent out emails to a number of Scania employees threatening to disclose the stolen data. A follow-up email with very similar content came a little later from an unrelated third party whose own email had been compromised. The sensitive data was later leaked online by an actor who is named Hensi, presumably after the extortion attempts had failed. While the leaked data samples have not been observed, insurance documents typically contain large amounts of personal data from many people.

Scania has now officially launched a full investigation into the security breach and has also notified the relevant privacy authorities. The company has also added that the cyberattack’s overall impact on its business operations was actually quite limited in its scope. The compromised application has since been disabled and is no longer reachable online, showing a “system maintenance in progress” message. This incident underlines the fact that insurers are a popular target for many cyber-attacks given the large volumes of sensitive customer data. It also highlights the significant risks posed to large corporations through their various third-party IT service provider relationships and supply chain.

Reference:

  • Hacker Steals Scania Insurance Documents Using Partner Credentials
Tags: cyber incidentsCyber Incidents 2025Cyber threatsJapanJune 2025Sompo
ADVERTISEMENT

Related Posts

Hawaiian Airlines Hit By Cyberattack

Hawaiian Airlines Hit By Cyberattack

June 27, 2025
Hawaiian Airlines Hit By Cyberattack

Qilin Ransomware Gang Hacks Estes Freight

June 27, 2025
Hawaiian Airlines Hit By Cyberattack

Generali Customer Data Exposed In Hack

June 27, 2025
Resupply DeFi Protocol Hacked For $9.6M

Resupply DeFi Protocol Hacked For $9.6M

June 26, 2025
Resupply DeFi Protocol Hacked For $9.6M

UK’s Glasgow City Council Hit By Cyberattack

June 26, 2025
Resupply DeFi Protocol Hacked For $9.6M

Cyberattack Hits South Tyrol Emergency Ops

June 26, 2025

Latest Alerts

nOAuth Flaw Allows Easy Account Takeover

Unpatchable Flaw In Hundreds Of Printers

Open VSX Flaw Allowed Extension Hijacks

Fake Job Offers Hide North Korean Malware

New Malware Uses Prompts To Trick AI Tools

New Zero Day Flaw Hits Citrix NetScaler

Subscribe to our newsletter

    Latest Incidents

    Hawaiian Airlines Hit By Cyberattack

    Qilin Ransomware Gang Hacks Estes Freight

    Generali Customer Data Exposed In Hack

    Resupply DeFi Protocol Hacked For $9.6M

    Cyberattack Hits South Tyrol Emergency Ops

    UK’s Glasgow City Council Hit By Cyberattack

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial