December 7, 2021

Nordic Choice Hotels IT systems impacted by Conti ransomware

On Monday 6th of December 2021, Nordic Choice Hotels have disclosed they had experienced a ransomware attack on Thursday 2nd of December 2021 which impacted the IT systems that handle reservations, payments, check-in, check-out and creation of new room keys. Because of the incident, the staff had to switch to manual procedures to carry out business operations. “Our investigations do not currently give […]
December 6, 2021

Hundreds of SPAR stores across northern England closed after ransomware attack

On Sunday 5th of December 2021, approximately 330 SPAR stores in northern England experienced a ransomware attack that has led to many of the stores having to close or switch to cash-only payments. The affected stores experienced a total IT outage which resulted in tills, credit card payment processing systems, and emails being impacted. Currently, it is unknown which ransomware gang is responsible […]
December 3, 2021

Ontario family support charity learns of ransomware incident after threat actors send emails targeting clients

On Thursday 2nd of December 2021, Social Enterprise for Canada (SEC), a Southern Ontario charity that offers family services announced they had learned they has been a target of a ransomware attack on Tuesday, 23rd of November 2021 which resulted in some of the servers supporting their email and IT systems being affected. They were alerted to the incident when it […]
December 3, 2021

FBI releases flash alert against the Cuba ransomware gang

On Thursday 2nd of December 2021, the United States Federal Bureau of Investigation (FBI) released a joint TLP:WHITE flash alert which revealed the Cuba ransomware gang have compromised at least 49 organizations in five critical infrastructure sectors, including the financial, government, healthcare, manufacturing, and information technology sectors. The FBI also revealed that the Cuba ransomware variant is commonly distributed through […]
December 1, 2021

Planned Parenthood LA reveals data breach of 400,000 patients after ransomware

On Tuesday 30th of November 2021, Planned Parenthood Los Angeles disclosed they had experienced a ransomware attack in October that has led to the exposure of the personal information of approximately 400,000 patients. In a letter sent to affected patients, Planned Parenthood said that the ransomware attack was conducted against their network between October 9th and October 17th. But Planned Parenthood discovered the […]
November 30, 2021

Australian government-owned energy company, CS Energy confirms they were a target of a ransomware attack

On Tuesday 30th of November 2021, CS Energy, an Australian government-owned energy generator in the Queensland confirmed they had suffered a ransomware attack on Saturday, 27th of November 2021 which occurred on their corporate network but did not impact the electricity generation at either of their power stations in Callide and Kogan Creek. CS Energy CEO Andrew Bills stated they were […]
November 29, 2021

Vestas, Danish wind turbine manufacturer announces they suffered a ransomware attack

On Monday 29th of November 2021, Vestas, a Danish manufacturer, seller, installer, and servicer of wind turbines confirmed they had suffered a ransomware attack on Friday, 19th of November 2021 which resulted in Vestas shutting down their IT systems across multiple business units and locations in the hope to contain the ransomware. Vestas revealed they had been working with their external […]
November 28, 2021

A surge of eCh0raix ransomware attacks seen over the Christmas holidays, targeting QNAP NAS devices

Recently users of QNAP network-attached storage (NAS) devices have been reporting their systems are being attacked by the eCh0raix ransomware, also known as QNAPCrypt. The initial infection vector of these attacks is still unclear but some of the incidents are believed to be due to users not properly securing their devices. As soon as the threat actor is within the […]
November 25, 2021

Singapore offshore vessel operator, Swire Pacific Offshore experiences ransomware attack by CL0P ransomware group

On Thursday 25th of November 2021, Swire Pacific Offshore (SPO), a Singapore offshore vessel operator confirmed they had suffered a cyber-attack might have resulted in the loss of confidential proprietary commercial information and personal information. They have not disclosed any specifics of the attack but the ransomware group, CL0P have released a listing on their leak blog where they have claimed […]