TechCrunch News 2024年12月09日
Blue Yonder investigating data theft claims after ransomware gang takes credit for cyberattack
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

供应链软件巨头Blue Yonder近日遭受网络攻击,Termite勒索软件团伙声称对此负责,并窃取了680GB数据,包括文件、报告、保险文件和电子邮件列表。该团伙威胁将公布这些数据,并将其用于未来的攻击。Blue Yonder表示正在与外部网络安全专家合作调查此事,并已通知受运营中断影响的客户。目前尚不清楚有多少客户受到影响,但Morrisons、Sainsbury's和Starbucks已确认受到影响。

💼Blue Yonder是一家总部位于亚利桑那州的供应链管理软件公司,为包括DHL、星巴克和Walgreens在内的数千家组织提供服务,在11月21日遭受了网络攻击。

😈Termite勒索软件团伙声称对此次攻击负责,并声称窃取了Blue Yonder公司680GB的数据,包括文件、报告、保险文件和电子邮件列表等。

🔐Termite团伙威胁称,将利用窃取的数据进行未来的网络攻击,并计划在暗网泄露网站上公布这些数据。

📢Blue Yonder公司已确认知晓攻击者身份,并表示正在与外部网络安全专家合作调查此事。目前尚不清楚该公司是否被要求支付赎金,以及被盗数据的具体数量和类型。

⚠️此次事件影响了Blue Yonder的部分客户,包括英国超市连锁店Morrisons和Sainsbury's,以及美国咖啡巨头星巴克,后者被迫手动计算员工工资。

Supply chain software giant Blue Yonder says it is investigating claims of data theft after a ransomware gang threatened to publish troves of data stolen from the company. 

Arizona-based Blue Yonder, which provides supply chain management software to thousands of organizations including DHL, Starbucks and Walgreens, was hit by a cyberattack on November 21. The company said at the time that it was a “ransomware incident” but did not say who was behind the attack.

On Friday, the “Termite” ransomware group claimed responsibility for the attack on its dark web leak site. In a post seen by TechCrunch, the gang claims to have stolen 680 gigabytes of data from Blue Yonder, including documents, reports, insurance documents and email lists, which Termite says it intends to use “for future attacks.” 

In a statement given to TechCrunch, Blue Yonder spokesperson Marina Renneke said the company was “aware of who has claimed responsibility.”

“We are aware that an unauthorized third party claims to have taken certain information from our systems,” Renneke said. “We are working diligently with external cybersecurity experts to address these claims. The investigation remains ongoing.”

The Termite ransomware gang first emerged earlier this year. Security experts believe the group is a rebranding of the notorious Russia-linked Babuk ransomware group, which carried out more than 65 attacks and received $13 million in ransom payments, according to the U.S. Department of Justice

Threat intelligence company Cyble noted similarities between the Termite and Babuk ransomware strains, and security researchers at Broadcom observed the group using a modified version of Babuk ransomware.

On its dark web leak site, where the gang lists six other victims, Termite is threatening to publish data allegedly stolen from Blue Yonder “soon.” It’s not known whether it has demanded a ransom payment from the company, and Blue Yonder declined to say when asked by TechCrunch.

Blue Yonder also declined to say how much and what types of data had been stolen but did not dispute the claims made by Termite when asked.

In an update to its cybersecurity incident page on Friday, Blue Yonder said it has “notified customers who were impacted by operational disruptions and have been working with them throughout the restoration process.”

It’s still not known how many of Blue Yonder’s 3,000-plus customers were impacted by the incident. U.K. supermarket chains Morrisons and Sainsbury’s previously confirmed to TechCrunch that they had been affected, and U.S. coffee giant Starbucks said the ransomware attack had forced managers to manually calculate employees’ pay.

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

Blue Yonder 网络安全 勒索软件 数据泄露 供应链
相关文章