9

Law firm working with Fortune 500 companies struck by ransomware attack

 3 years ago
source link: https://siliconangle.com/2021/07/19/law-firm-working-fortune-500-companies-struck-ransomware-attack/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client
Law firm working with Fortune 500 companies struck by ransomware attack
ransom.jpg
SECURITY

Campbell Conroy & O’Neil P.C., a leading law firm that counts among its customers some of the world’s largest companies such as those in the Fortune 500, has been struck by a ransomware attack.

The firm first detected the attack on Feb. 27 and an investigation determined that the attack involved ransomware preventing access to certain network files. While noting July 16 that it can’t confirm that data was stolen, the firm did say that there was a rich trove of data on the targeted system.

Data potentially stolen includes names, dates of birth, driver’s license and state identification numbers, financial account information, Social Security numbers, passport numbers, payment card information, medical information, health insurance information, biometric data and online account credentials.

Campbell Conroy & O’Neil added that it has employed third-party forensic investigators and alerted the U.S. Federal Bureau of Investigation.

Exactly how many Campbell Conroy & O’Neil clients may have had data stolen is unknown, clients include Exxon Mobile Corp., Apple Inc., Mercedes Benz, Toyota Motor Sales USA Inc., Honda North America Inc., Boeing Co., Home Depot Inc., British Airways plc, The Dow Chemical Co., PECO Energy Co., Allianz SE, Universal Health Services Inc., Marriott International Inc., Johnson & Johnson, Pfizer Inc., Time Warner and many others.

“Law firms are an extremely lucrative target to cybercriminals due to the massive amounts of personally identifiable information they collect and store such as Social Security driver’s license numbers, as well as financial and medical information,” Anurag Kahol, co-founder and chief technology officer of cloud access security broker Bitglass Inc., told SiliconANGLE. “Cybercriminals can leverage this data to commit financial fraud, engage in identity theft, or sell for high profits in dark web marketplaces.”

Stephan Chenette, co-founder and CTO at security optimization platform provider AttackIQ Inc., noted that ransomware attacks often have collateral damage and impact beyond the ransom.

“The incident not only impacts Campbell Conroy & O’Neil itself but also its clients, who are some of the world’s largest corporations,” Chenette explained. “As evidenced by this and many other recent ransomware attacks, it’s no longer an issue of just whether or not to pay the ransom – it is likely that the organization will suffer reputational damage, legal consequences and loss of data and business.”

Ilia Kolochenko, founder of application security company ImmuniWeb SA and a member of Europol Data Protection Experts Network, believes that the most valuable data from the law firm was not personally identifiable information but rather those behind the attack were searching for more sensitive information.

“Smart cybercriminals are chasing for sensitive dossiers of wealthy or politically exposed customers, looking for attorney-client privileged information or other sensitive litigation-related data,” Kolochenko said. “Modern cyber gangs are well aware of it, and on the dark web, there are dedicated channels to buy and sell data from compromised law firms.”

Worse, he added, “in some jurisdictions, stolen data, especially related to serious tax fraud, can be admitted in court proceedings both in civil and criminal cases. If such data was compromised, the criminals will almost certainly try to extort the law firm and its clients in parallel.”

Image: Wikimeida Commons

A message from John Furrier, co-founder of SiliconANGLE:

Show your support for our mission by joining our Cube Club and Cube Event Community of experts. Join the community that includes Amazon Web Services and soon to be Amazon.com CEO Andy Jassy, Dell Technologies founder and CEO Michael Dell, Intel CEO Pat Gelsinger and many more luminaries and experts.

Join Our Community 

We are holding our second cloud startup showcase on June 16. Click here to join the free and open Startup Showcase event.

“TheCUBE is part of re:Invent, you know, you guys really are a part of the event and we really appreciate your coming here and I know people appreciate the content you create as well” – Andy Jassy

We really want to hear from you. Thanks for taking the time to read this post. Looking forward to seeing you at the event and in theCUBE Club.


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK