Cyber ​​attack affects hundreds of US businesses – Times of India

San Francisco: A US IT company It urged customers on Friday to shut down its servers after cyber attackers smuggled ransomware onto its network platform.
Kasia said Friday evening that it has limited the attack to “a very small percentage of our customers” who use its signature VSA software, “currently estimated at less than 40 worldwide.”
Cybersecurity firm Huntress Labs previously said in a Reddit forum that it was working with targeted partners in the attack, and that some 200 businesses “have been encrypted.”
Ransomware attacks typically involve locking data into systems using encryption, which companies pay to gain access.
Kasia describes itself as a leading provider of IT and security management services for small and medium-sized businesses.
VSAs, the company’s flagship offering, are designed to let companies manage a network of computers and printers from a single point.
The company became aware of a possible incident with VSAs on the US East Coast in the afternoon and “immediately shut down” its servers as a “precautionary measure”.
Kasia informed “our on-premises customers via email, in-product notes, and phone to immediately shut down their VSA servers to prevent them from being compromised.”
“We believe we have identified the source of the vulnerability and are preparing a patch to address it,” the company said in a statement.
According to the New Zealand government’s Computer Emergency Response Team, the attackers were from a hacking group known as Reville.
REvil was also, according to FBI, behind last month’s attack on JBS, one of the world’s largest meat processors, that ended with the Brazilian company paying hackers $11 million worth of bitcoin.
The US Cybersecurity and Infrastructure Security Agency (CISA) said it is taking action to “understand and address the recent supply-chain ransomware attack” against Kasia VSA and service providers using its software.
CISA called on businesses to follow Kasya’s guidance and to shut down VSA servers quickly to avoid system tampering.
Kasia lists a US headquarters in Florida and an international headquarters in Ireland.
united nations security council held its first formal public meeting on cyber security this week, addressing the growing threat of countries’ key infrastructure being hacked – an issue US President Joe Biden Recently raised with Russian counterpart Vladimir Putin.
many security Council Members acknowledged the serious threats posed by cybercrime, particularly ransomware attacks on major establishments and companies.
Several US companies, including computer conglomerate SolarWinds and Colonial Oil Pipeline, have also been targeted in recent ransomware attacks.
The FBI blamed those attacks on hackers based in Russian territory.

.

Leave a Reply