Ako Business Development Center Targeted by Funksec Ransomware

Incident Date: Dec 15, 2024

Attack Overview
VICTIM
Ako Business Development Center
INDUSTRY
Business Services
LOCATION
Iran
ATTACKER
Funksec
FIRST REPORTED
December 15, 2024

Ransomware Attack on Ako Business Development Center by Funksec

The Ako Business Development Center (AKO BDC), a business consulting firm specializing in strategic management, coaching, and human resources, has recently fallen victim to a ransomware attack claimed by the cybercrime group Funksec. This incident underscores the vulnerabilities faced by businesses in the digital age, particularly those in the business services sector.

About Ako Business Development Center

AKO BDC, established in 2023 and headquartered in Iran, is a boutique consulting firm with a workforce of approximately 1 to 9 employees. The company focuses on providing tailored business solutions to enhance operational efficiency and growth strategies for both startups and established businesses. AKO BDC's commitment to personalized service and strategic partnerships distinguishes it from larger competitors, making it a notable player in its niche market.

Attack Overview

The ransomware attack on AKO BDC was discovered on December 16, when employees reported being unable to access critical files. The attackers deployed a well-known ransomware variant, encrypting essential data and demanding a substantial ransom in cryptocurrency. A ransom note was left, specifying the payment amount and threatening to release sensitive data if demands were not met. The company has engaged cybersecurity experts to assist in containment and recovery efforts, while law enforcement agencies have been notified and are actively involved in the investigation.

Funksec: The Ransomware Group

Funksec, an emerging cybercrime group first observed in December 2024, has claimed responsibility for over 10 breaches across various industries. The group employs double extortion tactics, combining data exfiltration with encryption to pressure victims. Funksec's Tor-based data-leak site hosts breach announcements and a free DDoS tool, indicating potential operations as a data broker. Their activities suggest a sophisticated approach to ransomware attacks, raising their profile in the cybercrime landscape.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.