Security News > 2022 > March > Shutterfly discloses data breach after Conti ransomware attack

Online retail and photography manufacturing platform Shutterfly has disclosed a data breach that exposed employee information after threat actors stole data during a Conti ransomware attack.
Today, Shutterfly disclosed that its network was breached on December 3rd, 2021, due to a ransomware attack.
According to Shutterfly's data breach notification, the Conti threat actor deployed the ransomware on December 13th, 2021, when the company first became aware that they were compromised.
"The attacker both locked up some of our systems and accessed some of the data on those systems. This included access to personal information of certain people, including you," reads Shutterfly's data breach notification filed with the California Attorney General's Office.
While Shutterfly's data breach notification did not shed much light on their attack, BleepingComputer broke the news in December that the company had suffered a Conti ransomware attack.
The Conti ransomware operation has released 7.02 GB of data they claim was stolen during the attack, including archives named for finance, legal, customer service, and payroll data.
News URL
Related news
- Texas State Bar warns of data breach after INC ransomware claims attack (source)
- US indicts 8Base ransomware operators for Phobos encryption attacks (source)
- Sarcoma ransomware claims breach at giant PCB maker Unimicron (source)
- RA World Ransomware Attack in South Asia Links to Chinese Espionage Toolset (source)
- Chinese espionage tools deployed in RA World ransomware attack (source)
- Lee Enterprises newspaper disruptions caused by ransomware attack (source)
- Fintech giant Finastra notifies victims of October data breach (source)
- US drug testing firm says data breach impacted 3.3 million people (source)
- US drug testing firm DISA says data breach impacts 3.3 million people (source)
- Background check, drug testing provider DISA suffers data breach (source)