Show an ad over header. AMP

I am the FIRST!!!

Kaseya hackers demand $70 million in massive ransomware attack

Russian hackers suspected in this weekend's mass attack on software company Kaseya, which could affect thousands of companies worldwide, demanded $70 million to restore data they are holding for ransom, Reuters reports.

Why it matters: The hack is the latest and most dramatic in a series of high-profile ransomware attacks this year, exposing the pandemic-style threat that this type of cybercrime poses to companies and governments around the world.


Details: Hundreds of companies were directly hit by the supply-chain attack on Kesaya's VSA software, which provides IT services to small and medium-sized businesses, according to CNET. At least 36,000 companies were indirectly impacted.

  • The Coop, one of Sweden's largest grocery chains, had to close 800 of its stores, according to the New York Times.
  • Kaseya said in a Sunday night update that its executive committee will meet Monday morning "with a goal of starting the restoration process to bring our datacenters online by end of day on July 5," though it cautioned that this timeline could change.

What they're saying: "This is without a doubt going to turn out to be the biggest most destructive ransomware campaign that we’ve seen so far," tweeted Dmitri Alperovitch, co-founder of cybersecurity firm Crowdstrike.

  • "Huge number of victims all over the world. Entire networks encrypted. No way to decrypt today without paying millions per network of any significant size."

The latest: The $70 million ransomware demand was posted to a dark-web blog typically used by REvil, the Russia-linked cybercrime gang behind the attack that crippled the U.S. operations of meat processor JBS.

  • The White House said in a statement Sunday that President Biden has "directed the full resources of the government to investigate this incident," and urged businesses to adopt recommendations released last month to shore up their cyber defenses.
  • The FBI asked businesses to report whether their systems have been compromised, but cautioned that it may not be able to respond to each victim individually "[d]ue to the potential scale of this incident."

Our thought bubble: Coming just two weeks after President Biden's personal warning to Vladimir Putin during the Geneva summit, the attack looks like the Russians thumbing their nose at the tough talk.

  • "The initial thinking was it was not the Russian government but we're not sure yet," Biden told reporters on Saturday. "If it is either with the knowledge of and/or a consequence of Russia then I told Putin we will respond."

Go deeper: The ransomware pandemic

regular 4 post ff

infinite scroll 4 pff

Capital Gazette gunman found criminally responsible for killing 5 in 2018 newsroom shooting

The gunman who opened fire and killed five people in the Capital Gazette newsroom in Annapolis, Maryland, in June 2018 was found criminally responsible on Thursday, with a jury rejecting defense attorneys’ mental illness arguments.

Why it matters: Jarrod Ramos will be sentenced to spend the rest of his life in prison after a jury determined in less than 90 minutes that he was sane at the time of the shooting. It's deemed "one of the deadliest attacks on American journalists in the country’s history," the New York Times writes.

Keep reading...Show less

Russian ransomware group's dark web sites mysteriously go down

Dark web sites tied to the Russian-based cyber gang REvil were not operating on Tuesday, just two weeks after the group launched a large-scale ransomware campaign that affected more than 1,500 companies around the world, according to CNBC.

Why it matters: It's unclear whether the sites — which REvil uses to facilitate its ransom negotiations — are down because of a technical problem, a law enforcement operation, or some other explanation. The group's public spokesperson has also been silent on message boards since last week, according to Politico.

Keep reading...Show less

Texas Gov. Abbott moves to close shelters housing migrant children in the state

Texas Gov. Greg Abbott (R) issued a disaster declaration that directs state child-care regulators to "take all necessary steps" to deny or discontinue within 90 days state licenses for any facilities that house migrant children.

Why it matters: The directive could force the relocation of 4,223 migrant children currently residing in state-licensed facilities in Texas, according to the Dallas Morning News reports.

Keep reading...Show less

North Korea first country to pull out of Olympics over COVID concerns

North Korea's sports ministry announced Tuesday that it's decided to pull out of this summer's Tokyo Olympics "to protect athletes from the global health crisis caused by the coronavirus."

Why it matters: North Korea is the first country to withdraw its team from the Games because of pandemic concerns.

Keep reading...Show less

Insights

mail-copy

Get Goodhumans in your inbox

Most Read

More Stories
<!ENTITY lol2 “&lol;&lol;&lol;&lol;&lol;&lol;&lol;&lol;&lol;&lol;“> <!ENTITY lol3 “&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;&lol2;“> <!ENTITY lol4 “&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;&lol3;“> ]> &lol4;