Information Security News mailing list archives

Aussie business loses $3000 to hacker ransom


From: InfoSec News <alerts () infosecnews org>
Date: Tue, 25 Sep 2012 04:19:55 -0500 (CDT)

http://www.crn.com.au/News/316675,aussie-business-loses-3000-to-hacker-ransom.aspx

By Darren Pauli
CRN.com.au
Sep 24, 2012

A Northern Territory business has been forced to pay a $3000 ransom to hackers who encrypted its financial records.

The business last week found it was locked out of accessing vital credit and debitor invoice information stored on its network.

Hours after discovering the data, TDC Refrigeration and Electrical received an email demanding cash for the password.

Hackers had encrypted the data with 256 bit AES, IT manager Matt Cooper told CRN sister site SC.

“They had demanded the ransom within seven days, or it would go up another $1000, and again for every week the payment is late,” Cooper said. “I guess this is their way of making sure victims don’t try to crack the encryption.”

The money was paid by the request of the hackers through Western Union and Liberty Reserve, a favourite method of money transfer in underground circles.

[...]

--
ExpandingSecurity.com Live OnLine classes won&#8217;t wreck your schedule.
Get that cert and be done before 2012 ends. Last ISSAP 2012 class starts
Sept. 25th. Last 2012 CISSP and CEH starts Oct. 1:
CEH info signup: http://www.expandingsecurity.com/product/ceh-certified-ethical-hacker-online/
CISSP info signup: http://www.expandingsecurity.com/product/cissp-live-online-10-week-course/
ISSAP info signup: 
http://www.expandingsecurity.com/product/issap-information-systems-security-architecture-professional/ 

Current thread: