A hacktivist group has claimed to have leaked CrowdStrike’s entire internal threat actor list, including indicators of compromise (IoC).
#CrowdStrike acknowledged the claims by the USDoD threat actor in a blog post on July 25, 2024
https://www.crowdstrike.com/blog/hacktivist-usdod-claims-to-have-leaked-threat-actor-list/
The sample leak contained data with “LastActive” dates until no later than June 2024
however the Falcon portal’s last active dates for some of the referenced actors are as recent as July 2024, suggesting the data was obtained very recently.
That data is available to tens of thousands of its approved customers, partners and prospects, as well as hundreds of thousands of users but is not available publicly.