---
title: "Accenture Confirms Breach as Hacker Advertises… | Firevault"
description: "Accenture has confirmed a security incident after a threat actor known as &quot;888&quot; advertised 35GB of stolen source code, RSA and SSH keys, Azure access tokens…"
lang: en-GB
json-ld: |
  [
    {
      "@context": "https://schema.org",
      "@type": "Organization",
      "@id": "https://fire-vault.com/#organization",
      "name": "Firevault",
      "legalName": "Firevault Limited",
      "url": "https://fire-vault.com",
      "logo": {
        "@type": "ImageObject",
        "url": "https://fire-vault.com/logo.png",
        "width": 200,
        "height": 60
      },
      "foundingDate": "2025-03",
      "description": "Firevault has rewritten the rules for data protection & storage via its offline secure storage (OSS) platform, for users to vault everything that matters.",
      "address": {
        "@type": "PostalAddress",
        "addressCountry": "GB",
        "addressLocality": "United Kingdom"
      },
      "contactPoint": [
        {
          "@type": "ContactPoint",
          "contactType": "customer service",
          "email": "hello@fire-vault.com",
          "availableLanguage": "English",
          "areaServed": "GB"
        }
      ],
      "sameAs": [
        "https://www.linkedin.com/company/firevault",
        "https://x.com/firevaultuk"
      ],
      "slogan": "Disconnect to Protect",
      "knowsAbout": [
        "Offline Secure Storage",
        "Physical Air Gap Data Protection",
        "Ransomware Protection",
        "Data Sovereignty",
        "GDPR Compliance",
        "NIS2 Compliance"
      ]
    },
    {
      "@context": "https://schema.org",
      "@type": "WebSite",
      "@id": "https://fire-vault.com/#website",
      "name": "Firevault",
      "alternateName": [
        "Firevault",
        "Firevault UK",
        "Firevault Limited"
      ],
      "url": "https://fire-vault.com",
      "publisher": {
        "@id": "https://fire-vault.com/#organization"
      },
      "inLanguage": "en-GB",
      "description": "Firevault has rewritten the rules for data protection & storage via its offline secure storage (OSS) platform, for users to vault everything that matters.",
      "potentialAction": {
        "@type": "SearchAction",
        "target": {
          "@type": "EntryPoint",
          "urlTemplate": "https://fire-vault.com/learn?q={search_term_string}"
        },
        "query-input": "required name=search_term_string"
      }
    },
    {
      "@context": "https://schema.org",
      "@type": "WebPage",
      "@id": "https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code#webpage",
      "url": "https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code",
      "name": "Accenture Confirms Breach as Hacker Advertises…",
      "description": "Accenture has confirmed a security incident after a threat actor known as \"888\" advertised 35GB of stolen source code, RSA and SSH keys, Azure access tokens…",
      "isPartOf": {
        "@id": "https://fire-vault.com/#website"
      },
      "about": {
        "@id": "https://fire-vault.com/#organization"
      },
      "primaryImageOfPage": {
        "@type": "ImageObject",
        "url": "https://fire-vault.com/__l5e/assets-v1/86dad049-d915-4438-bde3-b94da0656041/news-accenture-breach-2026-2x.jpg"
      },
      "inLanguage": "en-GB",
      "breadcrumb": {
        "@id": "https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code#breadcrumb"
      }
    },
    {
      "@context": "https://schema.org",
      "@type": "BreadcrumbList",
      "@id": "https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code#breadcrumb",
      "itemListElement": [
        {
          "@type": "ListItem",
          "position": 1,
          "name": "Home",
          "item": "https://fire-vault.com"
        },
        {
          "@type": "ListItem",
          "position": 2,
          "name": "Learn",
          "item": "https://fire-vault.com/learn"
        },
        {
          "@type": "ListItem",
          "position": 3,
          "name": "Knowledge Vault",
          "item": "https://fire-vault.com/learn/knowledge"
        },
        {
          "@type": "ListItem",
          "position": 4,
          "name": "Accenture Confirms Breach as Hacker Advertises 35GB of Source Code and Keys",
          "item": "https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code"
        }
      ]
    },
    {
      "@context": "https://schema.org",
      "@type": "NewsArticle",
      "headline": "Accenture Confirms Breach as Hacker Advertises 35GB of Source Code and Keys",
      "description": "Accenture has confirmed a security incident after a threat actor known as \"888\" advertised 35GB of stolen source code, RSA and SSH keys, Azure access tokens and configuration files on a cybercrime forum. The consultancy says the source is remediated and operations are unaffected, but the leak underlines how quickly developer secrets become an attacker's launchpad.",
      "url": "https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code",
      "image": [
        {
          "@type": "ImageObject",
          "url": "https://fire-vault.com/__l5e/assets-v1/86dad049-d915-4438-bde3-b94da0656041/news-accenture-breach-2026-2x.jpg",
          "width": 1200,
          "height": 1200
        },
        {
          "@type": "ImageObject",
          "url": "https://fire-vault.com/__l5e/assets-v1/86dad049-d915-4438-bde3-b94da0656041/news-accenture-breach-2026-2x.jpg",
          "width": 1200,
          "height": 900
        },
        {
          "@type": "ImageObject",
          "url": "https://fire-vault.com/__l5e/assets-v1/86dad049-d915-4438-bde3-b94da0656041/news-accenture-breach-2026-2x.jpg",
          "width": 1200,
          "height": 675
        }
      ],
      "thumbnailUrl": "https://fire-vault.com/__l5e/assets-v1/86dad049-d915-4438-bde3-b94da0656041/news-accenture-breach-2026-2x.jpg",
      "author": {
        "@type": "Person",
        "name": "Mark Fermor",
        "jobTitle": "Director & Co-Founder",
        "worksFor": {
          "@id": "https://fire-vault.com/#organization"
        },
        "url": "https://fire-vault.com/why-oss/about"
      },
      "publisher": {
        "@type": "NewsMediaOrganization",
        "name": "Firevault",
        "url": "https://fire-vault.com",
        "logo": {
          "@type": "ImageObject",
          "url": "https://fire-vault.com/logo.png",
          "width": 600,
          "height": 60
        }
      },
      "datePublished": "2026-07-09T11:36:09.395359+00:00",
      "dateModified": "2026-08-11T21:29:24.285561+00:00",
      "mainEntityOfPage": {
        "@type": "WebPage",
        "@id": "https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code"
      },
      "inLanguage": "en-GB",
      "articleSection": "Breach Analysis",
      "wordCount": 686,
      "keywords": "Accenture, Breach Analysis, data breach, cyber security, offline secure storage, data protection, physical air gap",
      "articleBody": "Accenture, the world''s largest IT services firm and No. 1 on CRN''s 2026 Solution Provider 500, has confirmed a security incident after a threat actor using the alias \"888\" claimed on 6 July 2026 to be selling roughly 35GB of source code and credentials stolen from the consultancy. In a statement to CRN, Accenture said it was aware of the \"isolated matter\", had remediated its source, and reported",
      "dateline": "United Kingdom",
      "speakable": {
        "@type": "SpeakableSpecification",
        "cssSelector": [
          "h1",
          ".article-summary",
          "h2"
        ]
      },
      "isAccessibleForFree": true,
      "copyrightHolder": {
        "@id": "https://fire-vault.com/#organization"
      },
      "copyrightYear": 2026
    }
  ]
---

Recent Breaches 

Breaches 

[2026 PowerSchool 62.4M records ](https://www.bleepingcomputer.com)[2026 DISA Global Solutions 3.3M records ](https://techcrunch.com)[2026 Globe Life 850K records ](https://www.securityweek.com)[2026 Lidl GB Customer contact data ](https://www.theguardian.com/business/2026/jun/11/lidl-gb-third-party-data-breach)[2026 Asahi Group Production systems disrupted ](https://www.reuters.com/technology/cybersecurity/asahi-says-cyberattack-disrupted-operations-japan-2025-09-29/)[2026 Kido International 8K records ](https://www.bbc.co.uk/news/articles/c623d7v0e5xo)[2026 Collins Aerospace (RTX) Check-in and boarding disruptio... ](https://www.bbc.co.uk/news/articles/c789e7l1z7po)[2026 Jaguar Land Rover Production and IT systems disru... ](https://www.bbc.co.uk/news/articles/cx2gx8p3rzeo)[2026 Peter Green Chilled Order and logistics data ](https://www.bbc.co.uk/news/articles/c0k7yy8n3g5o)[2026 Adidas UK Customer contact details ](https://www.bbc.co.uk/news/articles/c78jkev1el2o)[2026 PowerSchool 62.4M records ](https://www.bleepingcomputer.com)[2026 DISA Global Solutions 3.3M records ](https://techcrunch.com)[2026 Globe Life 850K records ](https://www.securityweek.com)[2026 Lidl GB Customer contact data ](https://www.theguardian.com/business/2026/jun/11/lidl-gb-third-party-data-breach)[2026 Asahi Group Production systems disrupted ](https://www.reuters.com/technology/cybersecurity/asahi-says-cyberattack-disrupted-operations-japan-2025-09-29/)[2026 Kido International 8K records ](https://www.bbc.co.uk/news/articles/c623d7v0e5xo)[2026 Collins Aerospace (RTX) Check-in and boarding disruptio... ](https://www.bbc.co.uk/news/articles/c789e7l1z7po)[2026 Jaguar Land Rover Production and IT systems disru... ](https://www.bbc.co.uk/news/articles/cx2gx8p3rzeo)[2026 Peter Green Chilled Order and logistics data ](https://www.bbc.co.uk/news/articles/c0k7yy8n3g5o)[2026 Adidas UK Customer contact details ](https://www.bbc.co.uk/news/articles/c78jkev1el2o)

[View All →](/learn/breaches)

[![Firevault - offline secure storage, physically disconnected from the internet](/assets/logo-color-DBVl0KCg.png)](/)

Products

Solutions

[Why OSS](/why-oss)

More

[Help](/help)[Get started](/get-started)

Overview

What HappenedWhat Data Was ClaimedWhy This MattersThe Offline AlternativeKey TakeawaysShareMore Resources

[Knowledge Vault](/learn/knowledge)/ Breach Analysis 

Breach Analysis · 9 July 2026 

# Accenture Confirms Breach as Hacker Advertises 35GB of Source Code and Keys

Accenture has confirmed a security incident after a threat actor known as "888" advertised 35GB of stolen source code, RSA and SSH keys, Azure access tokens and configuration files on a cybercrime forum. The consultancy says the source is remediated and operations are unaffected, but the leak underlines how quickly developer secrets become an attacker's launchpad.

![Mark Fermor](/assets/mark-fermor-C-vy1NeN.jpg)

Mark Fermor Director & Co-Founder, Firevault 

4 min read 

Share 

[](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code)[](https://twitter.com/intent/tweet?url=https%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code&text=Accenture%20Confirms%20Breach%20as%20Hacker%20Advertises%2035GB%20of%20Source%20Code%20and%20Keys%0A%0AAccenture%20has%20confirmed%20a%20security%20incident%20after%20a%20threat%20actor%20known%20as%20%22888%22%20advertised%2035GB%20of%20stolen%20source%20code%2C%20RSA%20and%20SSH%20keys%2C%20Azure%20access%20tokens%20and%20configuration%20files%20on%20a%20cybercrime%20forum.%20The%20consultancy%20says%20the%20source%20is%20remediated%20and%20operations%20are%20unaffected%2C%20but%20the%20leak%20underlines%20how%20quickly%20developer%20secrets%20become%20an%20attacker's%20launchpad.)[](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code)[](mailto:?subject=Accenture%20Confirms%20Breach%20as%20Hacker%20Advertises%2035GB%20of%20Source%20Code%20and%20Keys&body=Accenture%20has%20confirmed%20a%20security%20incident%20after%20a%20threat%20actor%20known%20as%20%22888%22%20advertised%2035GB%20of%20stolen%20source%20code%2C%20RSA%20and%20SSH%20keys%2C%20Azure%20access%20tokens%20and%20configuration%20files%20on%20a%20cybercrime%20forum.%20The%20consultancy%20says%20the%20source%20is%20remediated%20and%20operations%20are%20unaffected%2C%20but%20the%20leak%20underlines%20how%20quickly%20developer%20secrets%20become%20an%20attacker's%20launchpad.%0A%0Ahttps%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code)

![Neon padlock over source code and circuitry, representing the Accenture source code and credentials breach](/__l5e/assets-v1/86dad049-d915-4438-bde3-b94da0656041/news-accenture-breach-2026-2x.jpg)

Breach Analysis 

Article record

**Breach Analysis**Category 

**9 July 2026**Published 

**4 min read**Reading time 

**Mark Fermor**Written by 

Neon padlock over source code and circuitry, representing the Accenture source code and credentials breach

Why it matters

## What this means for organisations holding critical data

Accenture has confirmed a security incident after a threat actor known as "888" advertised 35GB of stolen source code, RSA and SSH keys, Azure access tokens and configuration files on a cybercrime forum. The consultancy says the source is remediated and operations are unaffected, but the leak underlines how quickly developer secrets become an attacker's launchpad.

In this analysis

1.  01 [What Happened](#section-0)
2.  02 [What Data Was Claimed](#section-1)
3.  03 [Why This Matters](#section-2)
4.  04 [The Offline Alternative](#section-3)
5.  05 [Key Takeaways](#section-4)

**On this page**[What Happened](#section-0)[What Data Was Claimed](#section-1)[Why This Matters](#section-2)[The Offline Alternative](#section-3)[Key Takeaways](#section-4)

Accenture, the world''s largest IT services firm and No. 1 on CRN''s 2026 Solution Provider 500, has confirmed a security incident after a threat actor using the alias **"888"** claimed on 6 July 2026 to be selling roughly **35GB of source code and credentials** stolen from the consultancy. In a statement to CRN, Accenture said it was aware of the "isolated matter", had remediated its source, and reported no impact to operations or service delivery.

## What Happened

On 6 July 2026, the actor known as "888" posted on a cybercrime forum offering data allegedly taken from an Accenture Azure DevOps repository. Screenshots shared with security researchers at BleepingComputer, Cyber Security News and SOCRadar showed the attacker cloning a repository and included a free sample to prove the haul. Two days later, Accenture confirmed the incident in a statement to CRN, saying the source had been remediated and that there was no impact to operations or service delivery. The company declined to say how the data was accessed, how current it was, or whether any client information was involved.

## What Data Was Claimed

According to the forum listing, the 35GB archive included:

-   **Application source code** from an Azure DevOps repository.
-   **RSA and SSH private keys** used for server and code-signing access.
-   **Azure Personal Access Tokens** and **storage access keys**.
-   **Configuration files** that typically expose infrastructure and database endpoints.

This is not the first time "888" has targeted Accenture. In 2024, the same handle tried to sell Accenture employee records taken through a third-party breach.

## Why This Matters

A source-code leak is rarely just a source-code leak. Repositories are where an organisation''s live secrets sit next to the logic that uses them, and the credentials named in this listing (SSH keys, RSA keys, Azure PATs, storage access keys) are exactly what an attacker needs to pivot from a stolen archive into production systems. Even if Accenture has now rotated every key that touched that repository, downstream customers using shared integrations, pipelines or managed services should assume the blast radius is wider than the initial statement suggests until proven otherwise.

It also reinforces a pattern Mark Fermor has flagged repeatedly at Firevault: the most damaging breaches of 2025 and 2026 have not started with a zero-day in the perimeter. They have started with a developer secret, a supplier login, or a forgotten token sitting somewhere it could be reached from the internet.

## The Offline Alternative

Firevault provides Layer 1 [physical air gap](/offline-secure-storage/what-is-oss) storage. The keys, recovery credentials and master copies of critical data held inside a Firevault unit sit on media that is **physically disconnected** from any network for the majority of its life. There is no repository to clone, no token to lift, and no remote path an attacker on a cybercrime forum can walk down.

For an organisation the size of Accenture, that principle applies less to day-to-day source control and more to the crown jewels behind it: root certificate authority keys, disaster-recovery vaults, offline copies of client escrow data, and the recovery material used to rebuild identity systems if the live environment is ever compromised. Kept online, those assets are one credential leak away from being enumerated. Kept in a physically air-gapped vault, they cannot be reached by an "888" logging into an Azure tenant from the other side of the world.

## Key Takeaways

-   **Confirmed, not resolved:** Accenture confirms the incident and says the source is remediated, but has not disclosed scope, access path, or whether client data was involved.
-   **Credentials, not code, are the payload:** The listing''s value is the SSH and RSA keys, Azure PATs and storage keys inside the archive, not the source itself.
-   **Assume rotation is not enough:** Any secret that lived in the affected repository should be treated as burned across every downstream system it authenticated to.
-   **Repeat targeting:** The same threat actor targeted Accenture in 2024 through a third-party breach, showing sustained interest in the supplier''s ecosystem.
-   **Keep the recovery keys offline:** The credentials that let you rebuild after a breach must not live in the same environment attackers can reach. Physical [air gap storage](/offline-secure-storage/what-is-oss) removes the network path entirely.

About the author

![Mark Fermor](/assets/mark-fermor-C-vy1NeN.jpg)

### Mark Fermor

[](https://www.linkedin.com/in/mfermor)

Director & Co-Founder

Co-founder of Firevault, focused on offline secure storage and protecting individuals and businesses from fraud, fines, loss and damage. Speaker, owner and advisor.

The Firevault view**Offline Secure Storage® keeps a clean copy beyond the reach of an attacker.**[Why #OSS →](/why-oss)

Control systems and access**Cut the physical paths attackers and third parties depend on.**[Explore Control →](/solutions/control)

Get started**Get started, or talk to a member of the team.**[Get started →](/get-started)

How Firevault would handle this

## Physical disconnection removes the path an attacker needs

Offline Secure Storage® holds a clean copy of your data on hardware that is physically disconnected, so an intrusion cannot reach it, encrypt it or delete it.

[Get started](/get-started)[Talk to the team](/demo)

**Hardware**Your data sits on dedicated encrypted hardware 

**Disconnect**Offline by default, connected only when you say so 

**Command**Access windows and retrieval under your control 

**Location**Held in a secure Firevault Bunker 

Related Reading

## You may also find these useful

[

![AnMed Closes Facilities Following Ransomware Attack and Data Claims](https://zomvctmqpgirvjnvawlz.supabase.co/storage/v1/object/public/article-images/anmed-facility-closures-following-ransomware-cyberattack-1786723492583.png)

Breach Analysis 

### AnMed Closes Facilities Following Ransomware Attack and Data Claims

South Carolina health system AnMed was forced to close 83 facilities following a cyberattack. Threat actors subsequently claimed to hold 6 terabytes of sensitive patient records.

14 Aug 2026 4 min 







](/news/anmed-facility-closures-following-ransomware-cyberattack)[

![US directive allows private firms to conduct offensive cyber operations](https://zomvctmqpgirvjnvawlz.supabase.co/storage/v1/object/public/article-images/us-directive-private-firms-offensive-cyber-operations-1786723418300.png)

Breach Analysis 

### US directive allows private firms to conduct offensive cyber operations

US President Donald Trump has signed a memorandum permitting private firms to execute offensive cyber operations. The move raises new risks of retaliatory attacks and collateral system disruptions.

14 Aug 2026 3 min 







](/news/us-directive-private-firms-offensive-cyber-operations)[

![Adobe Commerce attacked immediately after session breach vulnerability](https://zomvctmqpgirvjnvawlz.supabase.co/storage/v1/object/public/article-images/adobe-commerce-session-vulnerability-exploited-after-disclosure-1786684691416.png)

Breach Analysis 

### Adobe Commerce attacked immediately after session breach vulnerability

Security firm Sansec blocked attacks targeting Adobe Commerce immediately after disclosure. The flaw allows unauthenticated attackers to hijack sessions and customer data.

14 Aug 2026 4 min 







](/news/adobe-commerce-session-vulnerability-exploited-after-disclosure)[

![Cornelius faces legal investigation after alleged Cl0p cyber attack](https://zomvctmqpgirvjnvawlz.supabase.co/storage/v1/object/public/article-images/cornelius-alleged-clop-ransomware-data-breach-1786684482605.png)

Breach Analysis 

### Cornelius faces legal investigation after alleged Cl0p cyber attack

Cornelius faces legal scrutiny following reports of a Cl0p ransomware breach in August 2026. Claims suggest thousands of gigabytes of corporate data were compromised.

14 Aug 2026 4 min 







](/news/cornelius-alleged-clop-ransomware-data-breach)[

![Rogue Wi-Fi at 35,000 Feet: What the Delta Flight 591 Incident Teaches About Network Trust](https://zomvctmqpgirvjnvawlz.supabase.co/storage/v1/object/public/article-images/news%2Fdelta-rogue-wifi-defcon-2026.jpg)

Breach Analysis 

### Rogue Wi-Fi at 35,000 Feet: What the Delta Flight 591 Incident Teaches About Network Trust

Delta Air Lines is investigating an unauthorised Wi-Fi network broadcast aboard Flight 591 from Las Vegas to Atlanta, alongside a deauthentication attack that knocked passengers off the aircraft network. The lesson is not about aviation. It is about how easily a trusted connection can be impersonated.

13 Aug 2026 4 min 







](/news/delta-flight-rogue-wifi-deauth-attack-def-con-2026)[

![Ransomware Attacks Spike 20% in July While AI Steals the Headlines](https://zomvctmqpgirvjnvawlz.supabase.co/storage/v1/object/public/article-images/news%2Fransomware-spike-ai-distraction.jpg)

Breach Analysis 

### Ransomware Attacks Spike 20% in July While AI Steals the Headlines

Ransomware attacks jumped nearly 20 per cent in July, with 799 incidents logged globally. While AI dominates security headlines, finance, technology, pharmaceutical, medical billing and education organisations absorbed the sharpest increases.

12 Aug 2026 4 min 







](/news/ransomware-attacks-spike-july-2026-ai-distraction)

Share this article

Breach Analysis 9 July 2026 4 min read 

## Accenture Confirms Breach as Hacker Advertises 35GB of Source Code and Keys

Accenture has confirmed a security incident after a threat actor known as "888" advertised 35GB of stolen source code, RSA and SSH keys, Azure access tokens and configuration files on a cybercrime forum. The consultancy says the source is remediated and operations are unaffected, but the leak underlines how quickly developer secrets become an attacker's launchpad.

![Accenture Confirms Breach as Hacker Advertises 35GB of Source Code and Keys](/__l5e/assets-v1/86dad049-d915-4438-bde3-b94da0656041/news-accenture-breach-2026-2x.jpg)

![Mark Fermor](/assets/mark-fermor-C-vy1NeN.jpg)

Published by Mark Fermor , Director & Co-Founder 

Share 

[](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code)[](https://twitter.com/intent/tweet?url=https%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code&text=Accenture%20Confirms%20Breach%20as%20Hacker%20Advertises%2035GB%20of%20Source%20Code%20and%20Keys%0A%0AAccenture%20has%20confirmed%20a%20security%20incident%20after%20a%20threat%20actor%20known%20as%20%22888%22%20advertised%2035GB%20of%20stolen%20source%20code%2C%20RSA%20and%20SSH%20keys%2C%20Azure%20access%20tokens%20and%20configuration%20files%20on%20a%20cybercrime%20forum.%20The%20consultancy%20says%20the%20source%20is%20remediated%20and%20operations%20are%20unaffected%2C%20but%20the%20leak%20underlines%20how%20quickly%20developer%20secrets%20become%20an%20attacker's%20launchpad.)[](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code)[](mailto:?subject=Accenture%20Confirms%20Breach%20as%20Hacker%20Advertises%2035GB%20of%20Source%20Code%20and%20Keys&body=Accenture%20has%20confirmed%20a%20security%20incident%20after%20a%20threat%20actor%20known%20as%20%22888%22%20advertised%2035GB%20of%20stolen%20source%20code%2C%20RSA%20and%20SSH%20keys%2C%20Azure%20access%20tokens%20and%20configuration%20files%20on%20a%20cybercrime%20forum.%20The%20consultancy%20says%20the%20source%20is%20remediated%20and%20operations%20are%20unaffected%2C%20but%20the%20leak%20underlines%20how%20quickly%20developer%20secrets%20become%20an%20attacker's%20launchpad.%0A%0Ahttps%3A%2F%2Ffire-vault.com%2Fnews%2Faccenture-confirms-breach-hacker-35gb-source-code)

[Read full article](https://fire-vault.com/news/accenture-confirms-breach-hacker-35gb-source-code)

## Suggested Reading

-   [What is Offline Secure Storage The foundation of physical disconnection ](/offline-secure-storage/what-is-oss)
-   [Why Offline Secure Storage The case for physical control ](/why-oss)
-   [Ransomware Defence Hold gold copies offline ](/oss-for-ransomware-recovery)
-   [Control Physical path control for IT and OT ](/solutions/control)
-   [Knowledge Vault All articles, guides and whitepapers ](/learn/knowledge)
-   [Book a Demo See Firevault in action ](/demo)

[Back to Knowledge Vault](/learn/knowledge)