Security News > 2021 > August > Nokia subsidiary discloses data breach after Conti ransomware attack
Image: Kabiur Rahman Riyad. SAC Wireless, a US-based Nokia subsidiary, has disclosed a data breach following a ransomware attack where Conti operators were able to successfully breach its network, steal data, and encrypt systems.
Attack detected after Conti ransomware encrypted systems.
The Nokia subsidiary found that personal information belonging to current and former employees was also stolen during the ransomware attack on August 13, following a forensic investigation conducted with the help of external cyber security experts.
"The threat actor, Conti, gained access to the SAC systems, uploaded files to its cloud storage, and then, on June 16, deployed ransomware to encrypt the files on SAC systems," SAC says in data breach notification letters sent to an undisclosed number of impacted individuals.
While the company refused to acknowledge the ransomware attack and did not provide more info on the extent of the damage, the Conti ransomware gang revealed on their leak site that they stole over 250 GB of data.
According to a recent update, the ransomware group will soon leak all the stolen files online if the Nokia subsidiary doesn't pay the ransom they demanded.
News URL
Related news
- Bologna FC confirms data breach after RansomHub ransomware attack (source)
- Rhode Island confirms data breach after Brain Cipher ransomware attack (source)
- VPN vulnerabilities, weak credentials fuel ransomware attacks (source)
- Vodka maker Stoli files for bankruptcy in US after ransomware attack (source)
- BT unit took servers offline after Black Basta ransomware breach (source)
- Anna Jaques Hospital ransomware breach exposed data of 300K patients (source)
- Romanian energy supplier Electrica hit by ransomware attack (source)
- Ransomware attack hits leading heart surgery device maker (source)
- US sanctions Chinese firm for hacking firewalls in ransomware attacks (source)
- US sanctions Chinese cybersecurity company for firewall compromise, ransomware attacks (source)