Cyber Security

Pentagon IT Service Provider Hacked: U.S. Government Secrets Exposed

Leidos Holdings Inc., one of the largest IT services providers to the U.S. government, experienced a significant cybersecurity breach. Hackers leaked internal documents, raising concerns about the security of sensitive government data managed by third-party contractors.

Leidos, known for its extensive work with the Pentagon and other federal agencies, was the largest federal IT contractor in the 2022 fiscal year, with $3.98 billion in contract obligations.

The company’s clients include the Defense Department, the Department of Homeland Security, NASA, other U.S. and foreign agencies, and commercial businesses. Contracts with the U.S. government constitute 87% of Leidos’ revenue.

The leaked documents are believed to have been stolen as part of two breaches of Diligent Corp. in 2022, a platform Leidos used. The nature and sensitivity of the stolen documents remain unclear, but the leak underscores vulnerabilities in the cybersecurity frameworks of companies handling critical government information.

Download Free Cybersecurity Planning Checklist 2024 (PDF) – Download Here

According to the Cyber Press team investigation report, The data consists of one gigabyte of files in the following formats: zip, msg, doc, jpg, png, xls/x, and pdf. These files are associated with Leidos technical assistance and its customers.

Part one of the data set has 451 files representing credits, and part two contains 6,500 files representing bitcoins or dollars.

Claim of leaked data (Source: Cyberpress.org)

Leaked documents were found on a cybercrime forum. Bloomberg News reviewed some files but couldn’t verify their authenticity due to obscured details. The exact content and nature of these documents have not been publicly disclosed.

Document nature (Source: cyberpress.org)

Leidos recently became aware of the issue and is actively investigating the extent of the breach. The company has not yet made a public statement regarding the specifics of the leaked documents or the steps it is taking to mitigate the impact. Leidos has declined to comment on the stolen information.

The threat actor responsible for the breach has indicated plans to sell the data in two different types, further exacerbating concerns over the potential misuse of sensitive information. This incident has prompted a broader discussion on government contractors’ security measures and protocols.

The consequences of such data breaches are far-reaching, including financial losses, reputational damage, operational disruptions, and legal complications.

Cybersecurity experts warn that breaches like this can seriously damage consumer trust and make organizations face intense scrutiny from regulators and customers.

Leidos, formed in 2013 and later acquiring Lockheed Martin Corp.’s information technology business, plays a crucial role in national security through its IT services and solutions.

The recent security breach has prompted the company to take immediate action to evaluate the extent of the damage and to strengthen its defenses against future attacks.

Protect Your Business Emails From Spoofing, Phishing & BEC with AI-Powered Security | Free Demo

Guru Baran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

ResolverRAT Attacking Healthcare and Pharmaceutical Via Sophisticated Phishing Attacks

A new sophisticated remote access trojan (RAT) has emerged as a significant threat to healthcare…

7 minutes ago

Critical Linux Kernel Vulnerability Exposes Systems to Privilege Escalation Attacks

A significant vulnerability in the Linux kernel's Virtual Socket (vsock) implementation, designated as CVE-2025-21756, has…

32 minutes ago

Researchers Uncovered SuperShell Payloads & Multiple Tools From Hacker’s Open Directories

Cybersecurity researchers have uncovered a concerning cache of hacking tools, including SuperShell payloads and Cobalt…

59 minutes ago

Apache Tomcat Vulnerability Let Attackers Bypass Rules & Trigger DoS Condition

The Apache Software Foundation disclosed a significant security vulnerability in Apache Tomcat that could allow…

2 hours ago

CISA Issues Warning on Commvault Web Server Flaw Exploited in the Wild

The Cybersecurity and Infrastructure Security Agency (CISA) has added the Commvault Web Server vulnerability (CVE-2025-3928)…

3 hours ago

Kali Linux Warns that Update Process is Going to Fail for All Users

Kali Linux users worldwide are facing an imminent disruption as the security-focused distribution has announced…

6 hours ago