Editor’s Note: Hewlett Packard Enterprise (HPE) finds itself navigating another cybersecurity challenge, as allegations emerge of a breach by the hacker “IntelBroker.” While the validity of these claims remains under investigation, the incident highlights the ongoing vulnerabilities faced by even the most sophisticated enterprises. For cybersecurity, information governance, and eDiscovery professionals, this case underscores the critical importance of swift response protocols, thorough investigations, and proactive data protection strategies in mitigating cyber risks.
Content Assessment: Hewlett Packard Enterprise Faces New Cybersecurity Breach Allegations
Information - 91%
Insight - 90%
Relevance - 90%
Objectivity - 88%
Authority - 89%
90%
Excellent
A short percentage-based assessment of the qualitative benefit expressed as a percentage of positive reception of the recent article from ComplexDiscovery OÜ titled, "Hewlett Packard Enterprise Faces New Cybersecurity Breach Allegations."
Industry News – Cybersecurity Beat
Hewlett Packard Enterprise Faces New Cybersecurity Breach Allegations
ComplexDiscovery Staff
Hewlett Packard Enterprise (HPE), a prominent IT corporation formed in 2015 following its separation from Hewlett-Packard, is currently investigating allegations of a cybersecurity breach. On January 16, 2025, a hacker known as “IntelBroker” posted on BreachForums, a cybercrime platform, claiming to have obtained sensitive data from HPE. The claims, if validated, would mark another high-profile incident for HPE, which has faced prior cybersecurity challenges in recent years.
In a statement addressing the situation, Clare Loxley, an HPE spokesperson, confirmed the company’s awareness of the claims. “HPE became aware on January 16 of claims being made by a group called IntelBroker that it was in possession of information belonging to HPE,” Loxley said. She further explained that the company has initiated its cyber response protocols, disabled relevant credentials, and launched a thorough investigation to determine the validity and extent of IntelBroker’s assertions. Thus far, HPE has reported no operational impact to its business and found no evidence to suggest that any customer data has been exposed.
IntelBroker’s claims, however, are significant. The hacker alleges that they directly accessed HPE’s infrastructure for about two days and obtained sensitive information, including source code for products like Zerto and Integrated Lights-Out (iLO), private GitHub repositories, Docker builds, and digital certificates. IntelBroker also claims possession of personally identifiable information (PII) associated with historical user deliveries. In addition, the hacker alleges gaining access to HPE’s APIs and platforms such as WePay, GitHub, and GitLab.
This incident has raised questions about the potential scope of the breach and its implications for HPE’s cybersecurity posture. While no operational or customer impact has been reported, the list of allegedly compromised assets—if authentic—could pose risks for intellectual property theft, reputational damage, and regulatory scrutiny.
IntelBroker is not new to the cybersecurity spotlight. The hacker has previously claimed responsibility for breaches targeting high-profile organizations, including Cisco, General Electric, and Europol. Despite their notoriety, cybersecurity experts have cautioned that IntelBroker has a track record of exaggerating the scale or significance of their claims. As a result, the full extent of the alleged HPE breach remains uncertain pending further investigation.
This incident follows other cybersecurity challenges HPE has faced in recent years. In January 2024, the company disclosed that it had been targeted by Midnight Blizzard, a hacking group linked to the Russian state. That intrusion lasted for several months and affected limited areas of HPE’s SharePoint and mailbox environments. Additionally, in 2021, HPE announced that data repositories of its Aruba Central network monitoring platform had been compromised, further underscoring the ongoing risks posed by sophisticated cyberattacks.
As HPE works to validate IntelBroker’s claims, the incident serves as a stark reminder of the persistent challenges large corporations face in protecting their digital assets. With hackers targeting critical infrastructure and intellectual property, the need for robust cybersecurity measures has never been greater. HPE’s proactive steps, including the activation of response protocols and an ongoing investigation, reflect a commitment to addressing potential threats head-on.
While the investigation is still in its early stages, the case underscores the importance of vigilance, rapid response, and transparency in the face of cyber threats. For organizations like HPE, the battle against sophisticated attackers continues to evolve, demanding a relentless focus on securing sensitive data and safeguarding operations.
News Sources
- Hewlett Packard Enterprise Investigates Possible Breach, Source Code Theft
- HPE Investigates After Alleged Data Breach
- HPE data breach could be a nightmare for its customers
- HPE Investigating Breach Claims Involving Source Code: Report
- HPE investigates IntelBroker data theft claims
Assisted by GAI and LLM Technologies
Additional Reading
- Telefónica’s Data Breach Highlights Growing Cybersecurity Challenges for Telecom Giants
- PowerSchool Data Breach Highlights Urgent Cybersecurity Needs in Education Sector
Source: ComplexDiscovery OÜ