The Week in Ransomware – February 2nd 2024 – No honor among thieves

February 2, 2024 at 06:39PM Ransomware continues to disrupt hospitals, impacting patient care. Despite claims by groups like LockBit to avoid encrypting hospitals, attacks persist, causing organizations to shut down IT systems. Affiliates target healthcare, affecting medical chart access and electronic prescriptions. Recent attacks on Lurie Children’s Hospital and Saint Anthony Hospital highlight the ongoing … Read more

Lurie Children’s Hospital took systems offline after cyberattack

February 2, 2024 at 11:24AM Lurie Children’s Hospital in Chicago, a prominent pediatric care facility with 360 beds and 1,665 physicians, faced a cyberattack, prompting a shutdown of its IT systems. The incident disrupted operations, delaying medical care and impacting services, including internet, email, and phone access. The hospital is addressing the matter seriously, collaborating … Read more

FTC orders Blackbaud to boost security after massive data breach

February 1, 2024 at 05:25PM Blackbaud settled with the FTC after poor security and data retention led to a 2020 ransomware attack affecting millions of people. The company is ordered to improve security, delete unneeded customer data, and create an information security program. Blackbaud must also establish a data retention schedule and notify the FTC … Read more

Johnson Controls Ransomware Cleanup Costs Top $27M and Counting

January 31, 2024 at 04:51PM Johnson Controls International (JCI) spent $27 million remediating a September 2023 ransomware attack on its systems, which threatened physical security according to government officials. The attack locked up IT infrastructure and allowed data exfiltration. JCI’s incident management and response plan, along with external cybersecurity specialists, helped restore affected systems. The … Read more

Johnson Controls says ransomware attack cost $27 million, data stolen

January 31, 2024 at 10:00AM Johnson Controls International confirmed a ransomware attack in September 2023, costing the company $27 million and resulting in a data breach. Dark Angels ransomware gang stole over 27 TB of data and demanded a $51 million ransom. Johnson Controls expects costs to rise as they investigate the stolen data. They … Read more

Schneider Electric Division Responding to Ransomware Attack, Data Breach 

January 30, 2024 at 07:30AM Schneider Electric’s Sustainability Business division is affected by a ransomware attack and data breach, limited to its isolated network infrastructure. The incident impacted Resource Advisor and other systems, with access expected to resume in two days. The Cactus ransomware group is suspected to be behind the attack. This is not … Read more

Energy giant Schneider Electric hit by Cactus ransomware attack

January 29, 2024 at 03:12PM Schneider Electric was hit by a Cactus ransomware attack, compromising its Sustainability Business division and leading to data theft. The attack also disrupted its Resource Advisor cloud platform. The stolen data may include sensitive information about customers’ power utilization and compliance with environmental regulations. Schneider Electric is currently working on … Read more

Kansas City public transportation authority hit by ransomware

January 29, 2024 at 09:57AM KCATA, a major public transit agency, fell victim to a ransomware attack impacting its communication systems, rendering call centers inoperable. Despite this, regular bus services continue. KCATA is working with cyber professionals to restore systems. Medusa ransomware claimed responsibility and demanded a $2 million ransom, with a daily extension option … Read more

Akira ransomware gang says it stole passport scans from Lush in 110 GB data heist

January 26, 2024 at 07:31AM The Akira ransomware gang claims responsibility for a cyber incident at a UK bath bomb merchant, stealing 110GB of data. Staff-related and company documents, including passport scans, were accessed, with threats to publish soon. The company, Lush, acknowledged the incident and is cooperating with forensic experts. Akira’s ransom tactics and … Read more

Major US, UK Water Companies Hit by Ransomware

January 24, 2024 at 06:18AM Veolia North America and Southern Water were both hit by ransomware attacks resulting in data breaches. Veolia assures its water operations weren’t affected, but personal data may have been compromised. Southern Water is investigating a ransomware group’s claim of stealing personal information and documents. The water sector has seen increased … Read more