• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer
Sq Magazine LogoSQ Magazine

Smarter Insights for a Fast-Moving Digital World

  • Latest News
  • Statistics
  • About
  • Contact
Subscribe
Sq Magazine Logo
  • Latest News
  • Statistics
  • About
  • Contact
Subscribe
Home » Cybersecurity

AstraZeneca Data Breach Claimed by LAPSUS$ Hackers

Published on: March 23, 2026
Sofia Ramirez
Written By
Sofia Ramirez
Sofia Ramirez
Senior Tech Writer • 454 Articles
Sofia Ramirez is a technology and cybersecurity writer at SQ Magazine. With a keen eye on emerging threats and innovations, she helps reader...
LATEST POSTS:
GitLab Security Update Fixes 13 Dangerous Vulnerabilities
Critical Curl Update Fixes 18 Security Flaws and 25 Year Bug
AWS Statistics 2026: Revenue, Market Share and AI Growth
Robert A. Lee
Reviewed By
Robert A. Lee
Robert A. Lee
Senior Editor • 391 Articles
Robert A. Lee is a journalist at SQ Magazine who unpacks the fast-moving worlds of gaming and internet trends. He tracks everything from maj...
LATEST POSTS:
Google Chrome 149 Fixes 18 Serious Security Flaws
Is Mobile Gaming Becoming the New Normal
Why Your IT Support Always Feels Slow and What’s Changing in 2026
Lapsus Alleges Astrazeneca Data Breach
As Featured In
The New York Times LogoForbes LogoWired LogoDeloitte LogoResearch.com Logo
Share on LinkedIn ChatGPT Perplexity Share on X Share on Facebook

A hacking group claims it has accessed AstraZeneca’s internal systems and is now attempting to sell sensitive company data online.

Quick Summary – TLDR:

  • LAPSUS$ claims to have stolen around 3GB of AstraZeneca internal data.
  • Data allegedly includes source code, cloud configurations, and access credentials.
  • Hackers are selling the data privately instead of releasing it publicly.
  • AstraZeneca has not confirmed or denied the breach so far.

What Happened?

The hacking group LAPSUS$ has resurfaced, claiming it breached AstraZeneca’s internal systems and exfiltrated sensitive data. The group is now advertising the stolen dataset on underground forums, offering it for sale to interested buyers.

Threat actor LAPSUS$ Group have just claimed to have breached the pharmaceutical company AstraZeneca.

Threat actor claim:
“And there is a lot of data’s : Source Code (Java/Angular/Python), Cloud Infrastructure (AWS/Azure Terraform configs), Secrets & Access (Private… pic.twitter.com/e93q6ImKiN

— 𝙞𝙣𝙩𝙚𝙡𝙧𝙖𝙩 (@intelrat) March 20, 2026

LAPSUS$ Returns With a New Strategy

The group appears to be shifting tactics. Instead of releasing stolen data publicly, LAPSUS$ is attempting to directly monetize access by selling it through private negotiations. Buyers are asked to contact the attackers via secure messaging platforms to place bids.

This quieter approach makes it harder for security researchers to verify the full scope of the breach. So far, only sample data and screenshots have been shared as proof.

What Data Has Been Claimed as Stolen?

According to the attackers, the dataset is packaged in a compressed archive of about 3GB and includes several critical components:

  • Source code from Java Spring Boot services, Angular frontends, and Python scripts.
  • Cloud infrastructure configurations using AWS, Azure, Terraform, and Ansible.
  • Sensitive credentials such as private cryptographic keys, Vault data, and tokens linked to GitHub and Jenkins.
  • Employee and contractor data, including roles, permissions, and onboarding records.

If these claims are accurate, this combination of data could provide deep visibility into AstraZeneca’s development pipelines and cloud environments.

Newsletter
Subscribe To Our Newsletter!

Be the first to get exclusive offers and the latest news.

Analysis of Leaked Samples

Early reviews of the sample data suggest that parts of it may be genuine. One dataset appears to mirror GitHub Enterprise exports, showing:

  • Employee names and usernames.
  • Access roles such as Owner and Member.
  • Two factor authentication status.
  • Organizational permissions across repositories.

Another dataset includes third-party contractor information, such as email addresses, company affiliations, and internal access requests. This type of data could increase the risk of targeted phishing and social engineering attacks.

A third dataset labeled as financial information appears to be generic and not directly tied to AstraZeneca, suggesting it may have been included to add volume rather than value.

Supply Chain and Operational Risks

One of the most concerning aspects of the alleged data breach is the exposure of an internal repository linked to a supply chain portal. This system is believed to handle:

  • Demand forecasting
  • Inventory tracking
  • Product data management
  • Integration with SAP systems
  • Delivery performance metrics

If attackers have access to such systems, it could potentially impact logistics operations and data integrity across AstraZeneca’s supply chain.

Why Credentials and Infrastructure Matter Most?

Security experts often consider access credentials and infrastructure configurations as the most critical elements in any breach. If the claimed private keys and tokens are valid, attackers or buyers could:

  • Gain access to internal repositories.
  • Manipulate code or software builds.
  • Deploy malicious updates.
  • Access cloud workloads and sensitive environments.

This could escalate the incident from a data exposure to a full scale system compromise.

No Official Response Yet

As of now, AstraZeneca has not released any official statement confirming or denying the breach. This leaves several key questions unanswered, including:

  • Whether the data is authentic.
  • How the attackers gained access?
  • Whether affected systems have been secured.

The lack of confirmation also makes it difficult to assess the true impact of the incident.

SQ Magazine’s Takeaway

I think this situation is more serious than it may look at first glance. When hackers move from public leaks to quiet data sales, it becomes harder to track and even harder to respond quickly. What worries me most is not just the data itself, but the access behind it. If those credentials are real, this could open the door to deeper and long term damage. Companies need to act fast in such cases, even before full confirmation comes in.

This article has been reviewed and fact-checked by Robert A. Lee. SQ Magazine follows strict Publishing Principles and a documented Fact-Check Policy to ensure accuracy, transparency, and editorial independence across all content.

Add SQ Magazine as a Preferred Source on Google for updates! Follow on Google News
Share ChatGPT Perplexity
Sofia Ramirez

Sofia Ramirez

Senior Tech Writer


Sofia Ramirez is a technology and cybersecurity writer at SQ Magazine. With a keen eye on emerging threats and innovations, she helps readers stay informed and secure in today’s fast-changing tech landscape. Passionate about making cybersecurity accessible, Sofia blends research-driven analysis with straightforward explanations; so whether you’re a tech professional or a curious reader, her work ensures you’re always one step ahead in the digital world.

Related Posts

University of Pennsylvania Confirms Data Breach Linked to Oracle Hack
Cybersecurity

University of Pennsylvania Confirms Data Breach Linked to Oracle Hack

China Hit by 10PB Data Breach at Supercomputing Center
Cybersecurity

China Hit by 10PB Data Breach at Supercomputing Center

Zscaler Hit by Data Breach Linked to Salesloft Drift Compromise
Cybersecurity

Zscaler Hit by Data Breach Linked to Salesloft Drift Compromise

Disclaimer: The content published on SQ Magazine is for informational and educational purposes only. Please verify details independently before making any important decisions based on our content.

Reader Interactions

Leave a Comment Cancel reply

Primary Sidebar

Connect With Us

facebook x linkedin google-news telegram pinterest whatsapp email
google-preferred-source-badge Add as a preferred source on Google

You Should Also Read

GitHub Hit by Supply Chain Attack Through VS Code Extension
Iran Linked Hackers Claim Massive Attack on Stryker
Proton Uncovers 300 Million Stolen Credentials on the Dark Web

Table of Contents

  • Quick Summary – TLDR:
  • What Happened?
  • LAPSUS$ Returns With a New Strategy
  • What Data Has Been Claimed as Stolen?
  • Analysis of Leaked Samples
  • Supply Chain and Operational Risks
  • Why Credentials and Infrastructure Matter Most?
  • No Official Response Yet
  • SQ Magazine’s Takeaway
Connect on Telegram

Footer

SQ Magazine Logo

Smarter Insights for a Fast-Moving Digital World

Connect With Us

Follow Us on Google News

Editorial & Trust

  • About
  • Publishing Principles
  • Fact-Check Policy
  • Corrections Policy
  • Ethics Policy
  • Disclaimer

Worth Checking

  • Social Media Attention Span Stats
  • Gen Z Social Media Statistics
  • TikTok vs. Instagram Statistics
  • LLM Hallucination Statistics
  • Spotify User Statistics
  • Apple Customer Loyalty Statistics
Contact Us
13570 Grove Dr #189,
Maple Grove, MN 55311,
United States
10 a.m. – 6 p.m. | Every day

Copyright © 2022–2026 SQ Magazine. All Rights Reserved. Powered by the Neural Stack.

  • Privacy Policy
  • Terms
Company
  • About Us
  • Our Team
  • Our Mission
  • Core Values
Discover
  • Brand Assets
    Brand Assets
  • Stats Methodology
    Stats Research Process
  • Glossary
    Glossary
Categories
  • Internet
  • Technology
  • Artificial Intelligence
  • Gaming
  • Cybersecurity
Internet
Google Workspace Statistics 2026: Users, Market Share and AI
Google Workspace Statistics 2026: Users, Market Share and AI
YouTube vs TikTok Statistics 2026: Users, Revenue, Creator Economy
YouTube vs TikTok Statistics 2026: Users, Revenue, Creator Economy
Internet Outage Statistics 2026: Frequency, Cost and Causes
Internet Outage Statistics 2026: Frequency, Cost and Causes
Upwork Statistics 2026: Revenue, GSV, AI Work
Upwork Statistics 2026: Revenue, GSV, AI Work
Instagram Reels Statistics 2026: Plays and Engagement
Instagram Reels Statistics 2026: Plays and Engagement
Gig Economy Statistics 2026: Workforce & Earnings
Gig Economy Statistics 2026: Workforce & Earnings
Technology
AWS Statistics 2026: Revenue, Market Share and AI Growth
AWS Statistics 2026: Revenue, Market Share and AI Growth
Adobe Creative Cloud Statistics 2026: Subscribers, Revenue and Market Share
Adobe Creative Cloud Statistics 2026: Subscribers, Revenue and Market Share
Adobe Statistics 2026: Revenue, ARR, and Workforce Data
Adobe Statistics 2026: Revenue, ARR, and Workforce Data
Employee Productivity Statistics 2026: Engagement, Costs & Trends
Employee Productivity Statistics 2026: Engagement, Costs & Trends
Software Engineer Layoff Statistics 2026: Companies, Roles, AI Impact
Software Engineer Layoff Statistics 2026: Companies, Roles, AI Impact
iPhone Ecosystem Statistics 2026: Big Market Trends
iPhone Ecosystem Statistics 2026: Big Market Trends
Artificial Intelligence
Copilot Statistics 2026: Users, Adoption, Revenue and Market Share
Copilot Statistics 2026: Users, Adoption, Revenue and Market Share
AI Image Generation Statistics 2026: Market Size, Adoption & Risks
AI Image Generation Statistics 2026: Market Size, Adoption & Risks
AI Influencer Marketing Statistics: Market Size and Engagement
AI Influencer Marketing Statistics: Market Size and Engagement
AI Market Statistics 2026: Size, Growth & Investment
AI Market Statistics 2026: Size, Growth & Investment
Meta AI Statistics 2026: Users, Capex, and Adoption Data
Meta AI Statistics 2026: Users, Capex, and Adoption Data
Predictive AI Statistics 2026: Market Size, Adoption & Accuracy Data
Predictive AI Statistics 2026: Market Size, Adoption & Accuracy Data
Gaming
Online Gambling Regulations Statistics 2026: Global Compliance and Enforcement Data
Online Gambling Regulations Statistics 2026: Global Compliance and Enforcement Data
Fantasy Sports Statistics 2026: Users, Revenue & Trends
Fantasy Sports Statistics 2026: Users, Revenue & Trends
Apex Legends Statistics 2026: Players, Revenue, and Esports
Apex Legends Statistics 2026: Players, Revenue, and Esports
Fortnite Statistics 2026: Players, Revenue, Esports, and Engagement
Fortnite Statistics 2026: Players, Revenue, Esports, and Engagement
Gamers Statistics 2026: Players, Habits & Global Data
Gamers Statistics 2026: Players, Habits & Global Data
Minecraft Statistics 2026: 300 Million Copies Sold & 212M Monthly Players
Minecraft Statistics 2026: 300 Million Copies Sold & 212M Monthly Players
Cybersecurity
Password Statistics 2026: Credential Theft, MFA, and the Passkey Tipping Point
Password Statistics 2026: Credential Theft, MFA, and the Passkey Tipping Point
Identity Theft Statistics 2026: Key Fraud Data and Trends
Identity Theft Statistics 2026: Key Fraud Data and Trends
CVE Statistics 2026: Severity Distribution and Top Affected Vendors
CVE Statistics 2026: Severity Distribution and Top Affected Vendors
Dark Web AI Tool Marketplace Statistics 2026: Explosive Market Growth
Dark Web AI Tool Marketplace Statistics 2026: Explosive Market Growth
API Security Breach Statistics 2026: Hidden Threats
API Security Breach Statistics 2026: Hidden Threats
AI Voice Cloning Fraud Statistics 2026: Alarming Trends You Must Know Now
AI Voice Cloning Fraud Statistics 2026: Alarming Trends You Must Know Now
Categories
  • Cybersecurity
  • Artificial Intelligence
  • Internet
  • Technology
  • Gaming
Cybersecurity
GitLab Security Update Fixes 13 Dangerous Vulnerabilities
GitLab Security Update Fixes 13 Dangerous Vulnerabilities
Critical Curl Update Fixes 18 Security Flaws and 25 Year Bug
Critical Curl Update Fixes 18 Security Flaws and 25 Year Bug
Bajaj Auto Confirms Ransomware Attack on Key Systems
Bajaj Auto Confirms Ransomware Attack on Key Systems
LastPass Warns of Data Exposure in Klue Supply Chain Hack
LastPass Warns of Data Exposure in Klue Supply Chain Hack
Meta Stops Employee Tracking Program Over Security Concerns
Meta Stops Employee Tracking Program Over Security Concerns
Tata Electronics Hit by Cyber Breach Linked to Apple Files
Tata Electronics Hit by Cyber Breach Linked to Apple Files
Artificial Intelligence
Anthropic Exposes Massive Alibaba AI Distillation Attempt
Anthropic Exposes Massive Alibaba AI Distillation Attempt
Gemini 3.5 Flash Gets Powerful Computer Use Features
Gemini 3.5 Flash Gets Powerful Computer Use Features
OpenAI Unveils Powerful Jalapeño AI Chip With Broadcom
OpenAI Unveils Powerful Jalapeño AI Chip With Broadcom
Anthropic Unveils Claude Tag, a Powerful AI Teammate for Slack
Anthropic Unveils Claude Tag, a Powerful AI Teammate for Slack
OpenAI Expands Daybreak With Powerful Cybersecurity AI
OpenAI Expands Daybreak With Powerful Cybersecurity AI
ChatGPT Gets Targeted Ads in Japan as OpenAI Expands
ChatGPT Gets Targeted Ads in Japan as OpenAI Expands
Internet
Google Chrome 149 Fixes 18 Serious Security Flaws
Google Chrome 149 Fixes 18 Serious Security Flaws
Meta Hands WhatsApp Reins to CRED Founder Kunal Shah
Meta Hands WhatsApp Reins to CRED Founder Kunal Shah
Major X Outage Disrupts Users Worldwide, Service Restored
Major X Outage Disrupts Users Worldwide, Service Restored
Meta Adds 13+ Content Settings and AI Age Checks for Teens
Meta Adds 13+ Content Settings and AI Age Checks for Teens
Telegram Restricted in India as NEET Fraud Crackdown Grows
Telegram Restricted in India as NEET Fraud Crackdown Grows
UK Unveils Under 16 Social Media Ban With Tough New Rules
UK Unveils Under 16 Social Media Ban With Tough New Rules
Technology
Windows Recycle Bin Bug Confirmed After June Security Update
Windows Recycle Bin Bug Confirmed After June Security Update
Apple Urgently Fixes Beats Studio Buds Bug That Enabled Spying
Apple Urgently Fixes Beats Studio Buds Bug That Enabled Spying
Android 17 Is Here With Powerful AI Features and Security Boosts
Android 17 Is Here With Powerful AI Features and Security Boosts
Telegram Returns to Wear OS With Smartwatch App Upgrade
Telegram Returns to Wear OS With Smartwatch App Upgrade
Apple Announces macOS 27 Golden Gate at WWDC 2026
Apple Announces macOS 27 Golden Gate at WWDC 2026
Apple iPadOS 27 Introduces New Siri App and Productivity Tools
Apple iPadOS 27 Introduces New Siri App and Productivity Tools
Gaming
GTA 6 Pre-Orders Start June 25, New Cover Art Unveiled
GTA 6 Pre-Orders Start June 25, New Cover Art Unveiled
Epic Games Teases Unreal Engine 6 for Rocket League
Epic Games Teases Unreal Engine 6 for Rocket League
Stardew Valley Switch 2 Edition Arrives with Online Co-op
Stardew Valley Switch 2 Edition Arrives with Online Co-op
Hogwarts Legacy Crosses 40M Sales, Beating Industry Giants
Hogwarts Legacy Crosses 40M Sales, Beating Industry Giants
PUBG: Black Budget Launches Closed Alpha Test With a Bold PvPvE Twist
PUBG: Black Budget Launches Closed Alpha Test With a Bold PvPvE Twist
Counter-Strike 2’s $5.9 Billion Skin Economy Just Got Shattered
Counter-Strike 2’s $5.9 Billion Skin Economy Just Got Shattered
Newsletter

Subscribe To Our Newsletter!

Be the first to get exclusive offers and the latest news.

Newsletter

Subscribe To Our Newsletter!

Be the first to get exclusive offers and the latest news.