Uber Freight Investigates Data Breach Claimed by Hacking Group

Uber Freight, the logistics subsidiary of the ride-sharing giant Uber, is investigating a potential data breach after a hacking and extortion group claimed responsibility for a cyberattack. The company confirmed to Reuters that its systems are operating normally and that business operations have not been affected, though it did not respond to TechCrunch's inquiries at the time of reporting. The incident, first reported by Reuters, is the latest in a series of attacks by the Helix hacking group, which has targeted transportation, financial, and private equity firms throughout 2026. The group is known for exfiltrating large volumes of data from cloud environments and threatening to publish it unless victims pay a ransom. On its data leak site, Helix claims to have accessed Uber Freight's mailboxes, cloud storage drives, accounts payable files, and dispatch documents. Some files viewed by TechCrunch appear to show email correspondence between Uber Freight and its customers, dated around mid-June, though their authenticity has not been verified. Uber Freight has not disclosed whether it received direct communication from the hackers or paid a ransom. Meanwhile, Google's threat intelligence team identified Helix as part of a broader hacking collective it tracks as UNC6671. The group relies on social engineering techniques, particularly voice phishing, where attackers call IT helpdesks to reset employee passwords. Security experts note that while these methods are basic, they remain highly effective in tricking staff into granting access to sensitive systems. Google's analysis of the group's bitcoin wallets revealed it has collected at least $10.6 million in ransom payments between January and May 2026, underscoring the significant financial impact of such attacks.

via TechCrunch

Related