Security News > 2023 > November > Canadian government discloses data breach after contractor hacks

The Canadian government says two of its contractors have been hacked, exposing sensitive information belonging to an undisclosed number of government employees.
These breaches occurred last month and impacted Brookfield Global Relocation Services and SIRVA Worldwide Relocation & Moving Services, both providers of relocation services to Canadian government employees.
Government-related information stored on compromised BGRS and SIRVA Canada systems dates back to 1999, and it belongs to a broad spectrum of affected individuals, including members of the Royal Canadian Mounted Police, Canadian Armed Forces personnel, and Government of Canada employees.
While the Canadian government has yet to attribute the incident, the LockBit ransomware gang has already claimed responsibility for breaching SIRVA's systems and leaked what they claim to be archives containing 1.5TB of stolen documents.
After being notified of the contractors' security breaches on October 19th, the government promptly reported the breach to relevant authorities, including the Canadian Centre for Cyber Security and the Office of the Privacy Commissioner.
TransForm says ransomware data breach affects 267,000 patients.
News URL
Related news
- Third-party data breach affecting Canadian government could involve data from 1999 (source)
- D-Link confirms data breach after employee phishing attack (source)
- D-Link Confirms Data Breach: Employee Falls Victim to Phishing Attack (source)
- D-Link clears up 'exaggerations' around data breach (source)
- Casio discloses data breach impacting customers in 149 countries (source)
- City of Philadelphia discloses data breach after five months (source)
- ASVEL basketball team confirms data breach after ransomware attack (source)
- Okta data breach exposed personal information of employees (source)
- Okta hit by third-party data breach exposing employee information (source)
- Okta breach: 134 customers exposed in October support system hack (source)