```json
{
"findings": [
{
"title": "Cyberhaven Chrome Extension Compromised Leading to Massive Data Theft Incident",
"description": "Cyberhaven, a data‑loss prevention company, suffered a supply‑chain breach when a phishing attack compromised an employee’s Chrome Web Store account. The attackers published a malicious version of the Cyberhaven Chrome extension (version 24.10.4) on 25 December 2024, which exfiltrated cookies, session tokens and passwords from more than 400 000 users. Cyberhaven detected the incident on 26 December 2024, removed the malicious package, and issued an emergency advisory to customers to revoke and rotate credentials. The company engaged external investigators and law‑enforcement agencies and subsequently released a clean version of the extension.",
"severity": "HIGH",
"date": "2024-12-25",
"status": "resolved",
"source_urls": [
"httpshttps://www.nightfall.ai/blog/heres-what-we-can-learn-from-the-cyberhaven-incident",
"https://www.darktrace.com/blog/cyberhaven-supply-chain-attack-exploiting-browser-extensions",
"https://techcrunch.com/2024/12/27/cyberhaven-says-it-was-hacked-to-publish-a-malicious-update-to-its-chrome-extension/"
],
"raw_text": "The malicious updates allowed attackers to steal data from users' Facebook Ads accounts, AI platforms, and other services.",
"context": {
"NIP": "5252806828",
"KRS": "0000813228"
}
}
],
"no_findings_reason": "No additional adverse‑media findings related to CYBERHEAVEN SP. Z O.O. were identified in the sources examined."
}
```