Cyber Incident Victim: Sikh Awareness Foundation
Date:
Nov 2015
Location:
United States of America
Summary
Eggfather hacks sikhawareness.com and dumps 4,520 usernames and hashed passwords.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 0 motives | 1 technique |
| Threat Actor | Type | Location |
|---|---|---|
| 1 actor | Available to members | Available to members |
Description
The attacker was Eggfather, a well-known cybercriminal who has been involved in several high-profile hacking incidents in the past. On November 6th, 2015, he managed to breach the application server of SikhAwareness, a non-profit organization dedicated to promoting awareness about Sikhi and Sikh culture. The attacker used an exfiltration technique to steal sensitive data from the server, including personal information of users who had registered on the website.

The incident was first reported by Siphon, a cybersecurity blog that tracks and analyzes cyber attacks around the world. According to the report, Eggfather gained unauthorized access to SikhAwareness's application server through a vulnerability in the website's security protocols. Once inside, he was able to steal sensitive data such as user names, email addresses, and passwords of users who had registered on the website.
The incident has raised concerns among members of the Sikh community who use the website for various purposes, including learning about their religion and culture, connecting with other members, and accessing resources such as articles, videos, and podcasts. The breach also highlighted the need for organizations to prioritize cybersecurity measures to protect sensitive data from hackers and cybercriminals.
In response to the incident, SikhAwareness took immediate action by changing its security protocols and implementing additional security measures to prevent similar incidents in the future. The organization also informed affected users of the breach and advised them to change their passwords and monitor their accounts for any suspicious activity.
Overall, the cyber incident at SikhAwareness serves as a reminder that no organization is immune to cyber attacks, and it highlights the importance of prioritizing cybersecurity measures to protect sensitive data.
