Threat actor '888' claimed on July 6, 2026, to be selling approximately 35GB of stolen Accenture data including Azure Personal Access Tokens, Azure Storage Access Keys, source code, and configuration files from a compromised development environment. The threat actor provided evidence of authenticated access to Azure DevOps repositories via curl requests and git operations. Accenture acknowledged the incident and stated containment, but organizations using Azure DevOps are advised to rotate credentials and audit repository access.
- Accenture Data Breach Exposes 35GB Source Code and Azure DevOps (opens in a new tab)
- Accenture faces massive data breach that could put clients at ri(opens in a new tab)
- Accenture Confirms Isolated Breach After Hackers Claim 35 GB Sou(opens in a new tab)
- Accenture Confirms Data Breach After Hacker Claims Source Code T(opens in a new tab)
- Accenture acknowledges security incident following 35GB data the(opens in a new tab)
- Cyber Security Newsletter and Bulletin Weekly – 16-Year-Old Linu(opens in a new tab)
// Get alerts for Microsoft Azure