Aussizz Group Data Compromised in DragonForce Ransomware Attack

Incident Date: Apr 21, 2024

Attack Overview
VICTIM
Aussiz Group
INDUSTRY
Business Services
LOCATION
Australia
ATTACKER
Dragonforce
FIRST REPORTED
April 21, 2024

Ransomware Attack on Aussizz Group by DragonForce

Overview of the Attack

The Aussizz Group, a prominent migration and education consultancy based in Melbourne, Victoria, has reportedly fallen victim to a ransomware attack orchestrated by the cybercriminal group known as DragonForce. This incident involved the theft of approximately 278.91 GB of sensitive data.

Company Overview

Founded in 2009, Aussizz Group specializes in securing visas for Australia, New Zealand, and Canada. With a global presence, they boast over 55 Registered Migration Agents (RMAs) and 70 Qualified Education Agent Counsellors (QEACs), providing expert guidance in immigration and international education consulting.

Offering discounted PTE Exam Vouchers and Visa services, they've garnered praise from clients for their professionalism and expertise. Aussizz Group operates from multiple locations across Australia and internationally, with offices in India, Dubai, Hong Kong, and Canada.

Their commitment to integrity, innovation, and teamwork distinguishes them as a leader in the business services sector, with an employee base of 498 and an annual revenue of $22 million in 2024.

Vulnerabilities

Given its business nature, Aussizz Group handles a substantial amount of personal and sensitive information related to clients' immigration and educational details, making it a prime target for ransomware attacks like the one conducted by DragonForce. The large volume of data managed by the company, coupled with its global presence, increases its exposure to cyber threats.

About the Ransomware Group

DragonForce is known for its double extortion tactic, encrypting victims' data and threatening to release it if the ransom is not paid. Active since November 2023, the group targets various organizations across sectors. Their connection to the leaked ransomware builder from LockBit suggests a sophisticated level of technical abilities in their attack execution.

Sources:

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.