Security News > 2021 > February > HelloKitty ransomware behind CD Projekt Red cyberattack, data theft
The ransomware attack against CD Projekt Red was conducted by a ransomware group that goes by the name 'HelloKitty,' and yes, that's the name the threat actors utilize.
Today, CD Project disclosed that they were the target of a ransomware attack that encrypted devices on their network and led to the theft of unencrypted files.
"An unidentified actor gained unauthorized access to our internal network, collected certain data belong to CD PROJEKT capital group, and left a ransom note the content of which we release to the public. Although some devices in our network have been encrypted, our backups remain intact. We have already secured our IT infrastructure and begun restoring the data," CD Projekt disclosed today.
As part of the announcement, CD Projekt also released a screenshot of the ransom note that was left behind by the attackers.
The HelloKitty ransomware is named after a mutex named 'HelloKittyMutex' used when the malware executable is launched.
Txt,' which was also the same name used in the CD Projekt cyberattack.