Novo Nordisk Data Breach Tied to Stolen GitHub Access Tokens

The cyber extortion group FulcrumSec successfully breached Novo Nordisk by exploiting hardcoded credentials and GitHub access tokens found in client-side code. This data breach allowed the attackers to exfiltrate over one terabyte of information after navigating through the company’s cloud environments.

Edward Kiledjian @ekiledjian