CyberSecurity news

FlagThis

@malware.news //
A ransomware attack by the group RansomHub targeted the Mexican government’s Gob.mx platform, resulting in the theft of 313GB of sensitive data. The stolen data included government contracts, insurance information, and financial records. RansomHub threatened to release this data to the dark web unless a ransom was paid, giving the government a 10-day deadline. The incident is currently under investigation by Mexican authorities.

The compromised Gob.mx platform is a key government website that promotes innovation and provides essential information and services to the public. The scale of the data breach is significant, raising concerns about potential misuse of the stolen information and the potential impact on government operations and citizen trust. Check Point Research has identified RansomHub as the perpetrator, providing details of the attack in a Threat Intelligence Report, while Check Point's security solutions, such as Threat Emulation and Harmony Endpoint, offer protection against similar attacks.

This attack follows a recent cybersecurity incident affecting 13 Mexican airports. While the airport incident did not appear to have a material effect on operations, this new attack underscores significant vulnerabilities within Mexican government systems. The Mexican government is working to determine the precise extent of the damage and is actively investigating this incident. The undisclosed ransom amount and the potential consequences of the data release remain significant concerns.

Share: bluesky twitterx--v2 facebook--v1 threads


References :
  • www.bitdefender.com: The Mexican governmental platform Gob.mx has been by a ransomware attack by the group RansomHub, resulting in the theft of 313GB of data, including government contracts, insurance, and financial information.
  • malware.news: Malware.news provides the Threat Intelligence Report, which includes details about the RansomHub attack against the Mexican government and stolen data.
  • research.checkpoint.com: Check Point Research provides details about the ransomware attack, emphasizing the stolen data and potential risks.
  • malware.news: Ransomware attack on Blue Yonder disrupts retailers ahead of holidays
  • malware.news: Both Texas' City of Coppell and the Minneapolis Park and Recreation Board were admitted to have been compromised by the RansomHub ransomware operation, which also claimed to target two U.S. schools, according to The Record, a news site by cybersecurity firm Recorded Future.
  • www.scworld.com: RansomHub takes responsibility for Texas city, Minneapolis agency breaches
Classification: