Symrise AG, a major producer of flavours and fragrances, was hit by Clop ransomware operators. The threat actors claim to have stolen 500 GB of unencrypted files.
The attack was reported last week by Handelsblatt, the website databreaches.net also reported the news after @Chum1ng0 alerted them.
The company shut down its systems to prevent the malware from spreading into its network.
“In order to be able to assess the consequences and to prevent possible further effects, the company shut down all essential systems,” said Symrise .
“As far as we know, it is a criminal act with extortion intent,” said a company’s spokeswoman. Symrise launched an investigation into the incident and notified the State Criminal Police Office.
At the time of the disclosure the company did not reveal the family of malware that hit its system either the ransom amount.
BleepingComputer reported that the company was hit by the Clop ransomware that encrypted 1,000 devices.
“The Clop ransomware gang has claimed responsibility for the attack on Symrise and have told BleepingComputer that they allegedly encrypted 1,000 devices.” reported Bleeping Computer.
Clop ransomware operators revealed told BleepingComputer they attack vector were phishing emails.
The ransomware gang published images of allegedly stolen files on its leak site, including passport scans, accounting documents, and emails.
In early December, the group claimed to have stolen 2 million credit cards from E-Land Clop ransomware.
Other victims of the Clop ransomware were the Maastricht University, Software AG IT, and ExecuPharm.
[adrotate banner=”9″] | [adrotate banner=”12″] |
(SecurityAffairs – hacking, BISMUTH)
[adrotate banner=”5″]
[adrotate banner=”13″]
Experts found two vulnerabilities in the vBulletin forum software, one of which is already being…
Security Affairs Malware newsletter includes a collection of the best articles and research on malware…
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best…
Qualys warns of two information disclosure flaws in apport and systemd-coredump, the core dump handlers in Ubuntu, Red Hat Enterprise…
Meta stopped three covert operations from Iran, China, and Romania using fake accounts to spread…
The U.S. sanctioned Funnull Technology and Liu Lizhi for aiding romance scams that caused major…
This website uses cookies.