Security

Cyber-crime

Dark-web kingpin puts 'stolen' internal AMD databases, source code up for sale

Chip designer really gonna need to channel some Zen right now


Updated AMD's IT team is no doubt going through its logs today after cyber-crooks put up for sale what is claimed to be internal data stolen from the US microprocessor designer.

The supposedly swiped information is being peddled on the recently revived the dark-web BreachForums souk. One or more criminals using the handle IntelBroker are offering, in exchange for cryptocurrency, what's claimed to be customer databases, upcoming product specifications and plans, internal financial figures and source code, firmware and ROMs, staff information – including names, user IDs, and phone numbers – and other sensitive info.

We've asked AMD what its next steps are. “We are aware of a cybercriminal organization claiming to be in possession of stolen AMD data," the Epyc and Ryzen design house told us. "We are working closely with law enforcement officials and a third-party hosting partner to investigate the claim and the significance of the data.”

Intelbroker, a BreachForums moderator, has become notorious in data thievery circles after distributing information said to have been stolen during high-profile intrusions of big-name targets. Last month Europol admitted someone had broken into one of its user groups and exfiltrated files. In April, Home Depot confirmed a third-party slip-up led to staff data being leaked, and that same month the Pentagon said one of its partners had also been hit. Intelbroker put data obtained in all three incidents up for grabs on the dark web.

Of course, there's a big difference between claiming to have high-level information to sell and actually possessing it. And anyone interested in chip design would be out of their mind to look at the purportedly stolen AMD blueprints, so it's really not much use for engineers, though for phishers, fraudsters, unscrupulous investors, and others, it's perhaps valuable.

The clock is ticking for Intelbroker. Police around the world are gunning for BreachForums again and those who use it. With so many high-profile digital burglaries, the scumbag will have a target on their back - particularly since they also claim to have handled data stolen from the US Army Missile Command, and the Green Machine isn't known for forgiving and forgetting. ®

Updated to add on June 20

AMD in a statement to the media has sought to downplay the theft, saying it believes "a limited amount of information related to specifications used to assemble certain AMD products was accessed on a third-party vendor site."

Meanwhile, Intelbroker is now peddling internal data supposedly stolen from Apple, which may or may not be a damp squib.

Send us news
Post a comment

AMD aims latest processors at AI whether you need it or not

Ryzen AI PRO 300 series leans heavily on Microsoft's Copilot+ PC requirements

A closer look at Intel and AMD's different approaches to gluing together CPUs

Epycs or Xeons, more cores = more silicon, and it only gets more complex from here

AMD teases its GPU biz 'approaching the scale' of CPU operations

Q3 profits jump 191 percent from last quarter on revenues of $6.2 billion, helped by accelerated interest in Instinct

Wanted. Top infosec pros willing to defend Britain on shabby salaries

GCHQ job ads seek top talent with bottom-end pay packets

It's about time Intel, AMD dropped x86 games and turned to the real threat

Have recent troubles finally humbled Chipzilla?

Just how private is Apple's Private Cloud Compute? You can test it to find out

Also updates bug bounty program with $1M payout

AMD pumps Epyc core count to 192, clocks up to 5 GHz with Turin debut

Just not on the same chip, of course

Spectre flaws continue to haunt Intel and AMD as researchers find fresh attack method

The indirect branch predictor barrier is less of a barrier than hoped

Five Eyes nations tell tech startups to take infosec seriously. Again

Only took 'em a year to dish up some scary travel advice, and a Secure Innovation … Placemat?

Windows Themes zero-day bug exposes users to NTLM credential theft

Plus a free micropatch until Redmond fixes the flaw

Sophos to snatch Secureworks in $859M buyout: Why fight when you can just buy?

Private equity giant Thoma Bravo adds another trophy to its growing collection

The billionaire behind Trump's 'unhackable' phone is on a mission to fight Tesla's FSD

Dan O'Dowd tells El Reg about the OS secrets and ongoing clash with Musk