Keypoints
- 0APT claims responsibility for breaches affecting a range of public and private organizations.
- Alleged victims include a city municipal office, logistics firm, IT services provider, college, manufacturer, food distributor, dental clinics, and a law firm.
- Stolen PII is claimed to include employee SSNs, driver passports, and administrative emails.
- Financial and operational data reportedly exfiltrated includes invoices, vendor payments, payrolls, wholesale prices, and bank logs.
- Intellectual property and sensitive records said to be taken include source code, SQL backups, API keys, blueprints, R&D schematics, patient records, and legal case files.