Daily MaverickNATIONAL NARRATIVE: The SABC is dying. We’ll miss it more than we know when it’s gone.InquirerSenators should explain P24-billion ‘leadership fund’ – AbanteESPNPitcher, surgery pioneer Tommy John dies at 83CNN TürkTelevizyonda kanal ve frekans sorunu nasıl çözülür? İşte adım adım yapılması gerekenlerESPN DeportesDaz Cameron remolca la carrera del empate con un doble, juego nuevo en TorontoPunchTambuwal congratulates Adeleke on re-election, says democracy has wonThe Jerusalem PostEight Arab, Islamic nations accuse Israel of derailing Trump's Gaza peace planוואלהתינוק כבן שנה נפגע מרכב בטבריה, מצבו קשה한겨레기만과 적발의 대결 속 신뢰 없는 기술이 교육 망친다SözcüAydın’da feci kaza! Otomobil takla attı; 1 ölü, 4 yaralıSky TG24Etna, nuova intensa attività esplosiva alla Voragine: rischi per aeroporto CataniaNMESee Nick Cave & The Bad Seeds enjoying The Cure at Way Out West
The Daily Newsstand · Free, Always
Sunday, August 16, 2026

Hacking group claims mass data theft from Shell, Philips, GE, Fiserv and dozens of others

Translate

Philips said it had been targeted by Cl0p while Shell said it was aware of a recent "possible incident", confirming an earlier report on Thursday by Dutch media outlet BNR.

"We are working with our security teams and relevant experts to investigate the situation," a Shell spokesperson said. 

"Philips has identified and contained an attempted cybersecurity compromise of a specific enterprise server related to internal data," Philips said in a statement, adding that the incident does not impact customer environments.

A spokesperson for Fiserv said the company is aware of the threat actor's claims, but "based on our comprehensive review to date", it had found no evidence that customer, banking, transaction or personal data had been compromised, or that its operating environment had been affected.

A GE spokesperson said the company is aware of the claim, and had "initiated our cyber response protocols and are working to assess the potential issue."

Reuters could not independently verify the hacking group’s claims regarding the kind of data it stole and how much. The hackers did not respond to a request for comment.

While it’s not clear how the hackers allegedly accessed the companies, Ransom-ISAC, an industry information sharing group, issued a notice July 22warning that the hacking group was exploiting vulnerabilities in PTC Windchill and FlexPLM, software used to aid in engineering and manufacturing processes. 

Boston-based PTC did not immediately respond to a request for comment. The company has issued multiple security notices to its website, dating to June 18, urging customers to apply a patch for a vulnerability and sharing details about an unnamed attacker attacking its products.

Brandon Parsons, threat intelligence manager with Ascent Solutions and the author of the Ransom-ISAC advisory, said some companies began receiving notices from Cl0p on July 19 or July 20. The group focuses on vulnerabilities in key software packages rather than specific companies, he said, calling them “professional data extortionists.”

“They don’t really target a specific company, they target a specific zero day vulnerability and go after it,” Parsons said, referring to previously unknown bugs that software vendors haven’t yet issued patches for.

(Reporting by Charlotte Van Campenhout, A.J. Vicens; Editing by Kirsten Donovan and Shri Navaratnam)

View the original on Daily Maverick

KioskNews shows a cleaned-up reading view extracted from the publisher’s page — the original always lives on their site, not ours.