RansomHub claims to net data hat-trick against Bologna FC

RansomHub claims to net data hat-trick against Bologna FC

November 30, 2024 at 04:35AM

Bologna FC reportedly fell victim to the RansomHub cybercrime gang, which claims to have stolen sensitive data, including the employment contract of manager Vincenzo Italiano and personal information of players. The club confirmed a ransomware attack affected its security systems, issuing a warning against the dissemination of stolen data.

### Meeting Notes Summary:

**Subject:** Cyberattack on Bologna FC by RansomHub Cybercrime Gang

#### Key Takeaways:

1. **Incident Overview:**
– Bologna FC has reportedly fallen victim to the RansomHub cybercrime gang.
– The group’s dark web posts claim to contain extensive data stolen from the club.

2. **Stolen Data:**
– Included in the leaked data are:
– Manager Vincenzo Italiano’s employment contract detailing a €4.575 million salary and a potential €455,000 bonus.
– Personal information such as Italiano’s tax ID and bank account number.
– Former assistant manager Emilio De Leo’s alleged passport scan.
– Contracts and personal data of first-team players dating back to 2017.
– Spreadsheets showing club financials, including revenue from sponsorships.

3. **Security Concerns:**
– RansomHub criticized Bologna FC for inadequate network security, claiming it resulted in the theft of all confidential data.
– Bologna FC’s systems were allegedly targeted, leading to a breach involving corporate data.

4. **Club Response:**
– Bologna FC confirmed the cyberattack in a statement, acknowledging the theft of corporate data and warning against dissemination of such information.
– The club was given a three-day timeframe to meet undisclosed ransom demands, with a deadline set for November 29.

5. **Challenges in Verification:**
– Efforts to verify the claims with Bologna, Serie A, and Italy’s national cybersecurity agency (NCC-IT) have not been fruitful.
– Some of the club’s contact emails bounced back, indicating communication issues.

6. **Contextual Background:**
– Previous notable cyberattacks in professional football include incidents at Manchester United, Charlton Athletic, and the Dutch national football association.
– The trend highlights a growing risk of cyberattacks in the sports industry.

### Next Steps:
– Monitor developments regarding the ransom demands and club response.
– Consider strategies for improving cybersecurity within the organization to prevent similar incidents in the future.

Full Article