2011 RSA SecurID–based attack
Data compromised
Network access attempted; employee credentials
Technical writeup
May 2011. Attackers used stolen RSA SecurID data to forge tokens and target Lockheed Martin. Combined with phishing to generate duplicate tokens; gained access to contractor credentials. Lockheed detected quickly; no sensitive weapons/military data accessed. Replaced ~45,000 tokens; password resets for 120k+ employees. Same attackers as RSA breach.
Root cause
Stolen RSA SecurID data; forged tokens; phishing.