News The attack of the REvil cryptographer forced a major hoster to disable client sites

Tasken

Advanced
Joined
22.09.20
Messages
127
Reaction score
959
Points
63
At the beginning of this week, a major provider of managed web hosting solutions Managed[.] com suffered from a ransomware attack. The company was forced to shut down all its servers, and the incident even affected client sites. According to media reports, the responsibility for this attack lies with the operators of the REvil ransomware.

According to the publication ZDNet, the attack occurred on November 16, 2020, and on the same day, the company's specialists decided to disable all their systems, including those that support user sites, in order to protect the "integrity of customer data".

At first it was reported that the ransomware managed to encrypt only some sites, which were immediately isolated and disabled, but later the company warned that the attack affected the entire hosting infrastructure, including managed hosting solutions WordPress and DotNetNuke, mail servers, DNS servers, RDP endpoints, FTP servers and databases. Currently, restoration work is underway, and the company is investigating the incident, together with law enforcement agencies.

Journalists note that at first the company tried to pass off this attack as unscheduled technical work, but Managed [representatives quickly enough.] com realized their mistake and reported the real situation.

Now the hoster's concerned customers write on the company's forums that their sites may be unavailable for many days or even weeks. People refer to a similar incident that affected A2 Hosting in may 2019. Back then, it took the company more than a month to return to normal operations, and many customers had to wait for their sites and site data to be restored.

According to the publication Bleeping Computer, which refers to its own sources in the information security community, the responsibility for this attack lies with the operators of the REvil ransomware. According to a screenshot available to the publication, REvil is demanding a $ 500,000 ransom from the affected company. At the same time, it is still unclear whether the hackers managed to steal some data from the company before encrypting the files.


attack news carding method hack news hackers news hacking news news revil revil news
 
Top Bottom