Kaseya Postpones Bringing ITSM Platforms Back Up

Kaseya has decided to postpone bringing its IT service management (ITSM) platform back online after a ransomware attack until Sunday afternoon July 11, 2021, Eastern Standard Time. Previously, the company had committed to bringing both the software-as… Continue reading Kaseya Postpones Bringing ITSM Platforms Back Up

Kaseya Starts Recovery After REvil Attack

Kaseya is now reporting the software-as-a-service (SaaS) instance of its Virtual System Administrator (VSA) platform will be back online sometime between 4:00 p.m. and 7:00 p.m. EST today. It expects the on-premises editions of VSA to be patched withi… Continue reading Kaseya Starts Recovery After REvil Attack

Kaseya Details REvil Attack, Incident Response Plan

Kaseya, an IT service management (ITSM) tools provider employed by managed service providers (MSPs) and internal IT teams, announced it will keep the software-as-a-service (SaaS) edition of its platform offline until further notice after a ransomware … Continue reading Kaseya Details REvil Attack, Incident Response Plan

REvil’s Linux Version Targets VMware ESXi Virtual Machines

Organizations running ESXi environments that thought they had somehow escaped the attention of REvil ransomware operators are in for a rude awakening – the ransomware-as-a-service’s repertoire now includes a Linux version aimed squarely at VMware ESXi… Continue reading REvil’s Linux Version Targets VMware ESXi Virtual Machines

REvil Hits French Connection, Grupo Fleury

The REvil ransomware gang continues its destructive trek around the globe, routing out and exploiting vulnerabilities at (often) high-profile targets. One of their latest victims is nearly 50-year-old UK clothing retailer French Connection whose in-yo… Continue reading REvil Hits French Connection, Grupo Fleury

REvil Ransomware Operators Claim Valley Health Systems as New Victim

Valley Health Systems have been targeted by REvil ransomware operators, according to Cyble security researchers. The discovery was made during routine monitoring for data leaks when researchers stumbled upon a post made by the ransomware gang. “Recentl… Continue reading REvil Ransomware Operators Claim Valley Health Systems as New Victim

Kentucky-Based Fine Spirits Manufacturer Targeted by REvil Ransomware

Sodinokibi (REvil) ransomware operators have been busy over the past month, and have now claimed US fine spirits manufacturer Brown-Forman as their latest victim. The Kentucky-based company, one of the largest US businesses in the spirits and wine busi… Continue reading Kentucky-Based Fine Spirits Manufacturer Targeted by REvil Ransomware

REvil Ransomware Gang Claims Spanish State-Owned Railway Infrastructure Manager as New Victim

REvil ransomware operators successfully targeted Spanish state-owned railway operator Administrador de Infraestructuras Ferroviarias (Adif) last week. The bad actors claimed to have exfiltrated around 800 GB of data from Adif’s servers, including… Continue reading REvil Ransomware Gang Claims Spanish State-Owned Railway Infrastructure Manager as New Victim

REvil Ransomware Gang Starts Auctioning Victim Data

The criminal group behind the REvil ransomware enterprise has begun auctioning off sensitive data stolen from companies hit by its malicious software. The move marks an escalation in tactics aimed at coercing victims to pay up — and publicly shaming those don’t. But it may also signal that ransomware purveyors are searching for new ways to profit from their crimes as victim businesses struggle just to keep the lights on during the unprecedented economic slowdown caused by the COVID-19 pandemic. Continue reading REvil Ransomware Gang Starts Auctioning Victim Data