A phishing lure aimed at a single employee has exposed engineering files inside a company whose connectors end up in military satellites, missiles and fighter jets.
IEH Corporation told the Securities and Exchange Commission on Aug. 6 that an intruder broke into a staffer’s Microsoft 365 mailbox after the worker fell for a credential theft. The attacker posed as a prospective business contact, sent what looked like a genuine Microsoft sharing link, and collected the login through a counterfeit page.
The mailbox held messages, attachments, purchase orders, engineering documentation and possibly export-controlled technical information. The company said it found no proof the data was copied out, but the material sat within reach of the intruder during the compromise window.
IEH acted to secure the account, switch off malicious mailbox rules, preserve evidence and review authentication controls across its M365 setup. It does not expect a material hit to operations while the investigation proceeds.
The stakes reach well past one inbox. The firm’s specialty connectors support THAAD and Patriot missile programs, airborne and ground radars, radios, torpedoes and aircraft flown by European air forces and India. Its products feed the hardware backbone of U.S. space and missile defense.
For space operators and prime contractors, the episode shows how routine phishing can touch the industrial base that builds orbital systems. Export-controlled data flowing through supplier mailboxes remains an attractive prize for adversaries probing the defense supply chain.
IEH has not commented publicly on the breach.