Uber Freight said business operations continue normally after it identified, contained and remediated unauthorized access to part of its systems and repositories, and the company said it engaged federal law enforcement. Helix, the extortion group that posted on August 6 what it said were nearly 1 million Uber Freight files, has since claimed it stole mailboxes, cloud storage drives, accounts payable files and dispatch documents; some files reviewed by TechCrunch appeared to show customer email correspondence dated around mid-June, though their authenticity was not immediately verified. Uber Freight has not said whether it received correspondence from the hackers or paid a ransom. Google has linked Helix to the broader UNC6671 hacking cluster, which uses social engineering including voice phishing against IT help desks, and said a review of the gang's bitcoin wallets showed at least $10.6 million in ransom payments between January and May. The incident fits a wider campaign that has targeted transportation companies, private equity firms and financial institutions.