Azure Cloud Data Breach Affects Major Companies

Criminals steal data from well-known brands using leaked login details

ThreatVectr Newsdesk· 3 min read
Full-frame edge-to-edge photoreal news-editorial shot of a modern laptop on a clean desk, screen showing an abstract blue Windows-style recovery interface with
Share

Key points

  • Criminals stole data from several Fortune 500 companies in September 2023.
  • Over 1.7 million records taken from McDonald's, the largest batch.
  • Stolen data could lead to further phishing attacks targeting employees.

A data thief calling themselves 'TheHatman' has allegedly stolen data from major companies using Microsoft's Azure cloud service. This cybercriminal claims to have taken millions of records from big names you might recognize, like McDonald's Corporation, Tata Consultancy Services (TCS), and Vodafone. They got into these companies' systems by using leaked passwords.

How did the hackers get in?

The hackers used leaked passwords to access Azure, Microsoft's cloud computing service, and Entra, Microsoft's identity and access management tool. They could steal sensitive data like employee names, email addresses, and job titles. Hudson Rock, an organization that looks into such incidents, says the stolen data looks real because it matches what is usually found in Azure directory exports.

What data was stolen?

The largest data theft was from McDonald's, with over 1.7 million records stolen. Other affected companies include TCS with 800,000 records stolen, Vodafone with 425,000, HCL Technologies with 250,000, and InterContinental Hotels Group (IHG) with 185,000.

Company Records Stolen
McDonald's 1.7 million
TCS 800,000
Vodafone 425,000
HCL Technologies 250,000
IHG 185,000

The information taken includes not just names and email addresses but also phone numbers, job titles, and details about who works for whom. This makes it easier for hackers to send fake emails that look real, trying to trick employees into giving away more information or access.

Should employees be worried?

Yes, employees should be cautious. With access to detailed internal information, hackers can craft very convincing fake emails. These emails, known as spear-phishing, are designed to trick people into revealing passwords or other sensitive information. Hudson Rock warns that knowing who manages whom can help hackers target high-value individuals, making it easier to break into a company's systems.

Common questions

What is Azure?

Azure is a cloud computing service by Microsoft. It allows companies to store and manage data on the internet, rather than on personal or company-owned servers.

What should I do if my company uses Azure?

If you work for a company that uses Azure, be extra careful about any suspicious emails you receive. Verify the sender's identity before clicking on links or downloading attachments.

Can my personal information be used against me?

Yes. If hackers have your work-related data, they can pretend to be your boss or co-workers to trick you into giving up more private information.

© 2026 Threat Vectr