Uber Freight Targeted by Helix Ransomware Group

A hacking and extortion group known as Helix has claimed responsibility for a cyber-attack and data breach targeting Uber Freight, Uber’s logistics subsidiary. The group alleges it stole mailboxes, cloud storage data, accounts-payable files, and dispatch documents, including apparent customer correspondence. Uber Freight says its operations and systems remain unaffected, but has not confirmed the scope or authenticity of the stolen data, whether it received a ransom demand, or whether any payment was made.

The incident is part of a broader campaign by Helix. The group has targeted transportation, financial, and other enterprises by using social engineering —particularly voice phishing and fraudulent IT help-desk calls — to obtain access before exfiltrating data and demanding ransom. It is estimated that this group has collected at least $10.6 million in ransom payments between January and May 2026, underscoring the scale and effectiveness of the threat.

Organizations must respond with a next-generation, unified, AI-native cybersecurity approach, using a platform like NIKSUN, that provides comprehensive visibility and coordinated protection across the entire environment — network, endpoints, applications, identities, cloud infrastructure, and data. Without a single, intelligent console that correlates activity across these domains in real time, detecting the subtle signals of social engineering, compromised credentials, lateral movement, and data exfiltration, and stopping an attack before sensitive information leaves the organization, is very unlikely. Read more about this story on our LinkedIn page

We use cookies to offer you a better browsing experience and to analyze site traffic. By using our site, you consent to our use of cookies.

Essential Cookies
Site Analytics