On Sunday 10th of July 2022, WordFly, a major mailing list provider experienced a ransomware attack which resulted in the WordFly website being taken offline as well as data related to their clients being stolen. In an announcement released on Tuesday 19th of July 2022, WordFly stated that their engineering team discovered a network disruption on Sunday 10th of July 2022 and had started an investigation into the incident where they engaged external cybersecurity professionals and digital forensics experts to understand what had happened and the potential impact.
During the investigation, it was discovered that the threat actors had exported the email addresses and other data related to their clients. Although, at this time, WordFly believe that the exported data was not sensitive. A later update from the investigation revealed that the threat actors had deleted the stolen data on Friday 15th of July 2022. Although this is based on a statement from the threat actor. But no evidence has been seen to suggest that the information was publicly leaked or misused.
© 2021 CyberEnsō – Nihon Cyber Defence Co., Ltd. All Rights Reserved.