Barbados Statistical Service Hit by SafePay Ransomware Attack

Incident Date: Nov 19, 2024

Attack Overview
VICTIM
Barbados Statistical Service
INDUSTRY
Government
LOCATION
Barbados
ATTACKER
SafePay
FIRST REPORTED
November 19, 2024

Ransomware Attack on Barbados Statistical Service by SafePay

About the Barbados Statistical Service

The BSS is the principal statistical agency of Barbados, established in 1956 with assistance from the United Nations. It plays a crucial role in providing reliable and timely economic and social statistics, supporting decision-making across various sectors. The agency is structured into four main divisions, each focusing on specific areas such as business surveys, census and surveys, trade and national accounts, and socio-economic statistics. Despite its vital role, the BSS has faced challenges in data collection efficiency and response rates, which may have contributed to its vulnerability to cyber threats.

Details of the Attack

On November 21, the Barbados Statistical Service (BSS), a key governmental agency under the Ministry of Economic Affairs and Investment, was targeted by the ransomware group SafePay. This attack resulted in the exfiltration of 330GB of sensitive data, raising significant concerns about the cybersecurity measures in place within the agency.

SafePay Ransomware Group

SafePay distinguishes itself by utilizing LockBit source code and maintaining a presence on the dark web through a Tor-based leak site. The group has been involved in at least 22 confirmed attacks, employing sophisticated methods to infiltrate networks. SafePay typically gains access through valid credentials, often acquired via VPN gateways, and does not commonly use Remote Desktop Protocol for access, indicating a stealthy approach to infiltration.

Implications and Concerns

The attack on the BSS underscores the growing threat posed by ransomware groups like SafePay, particularly to governmental agencies that handle sensitive data. The breach not only compromises the integrity of the BSS's data but also raises broader concerns about the security of national statistical information. As ransomware tactics continue to evolve, it is imperative for organizations to bolster their cybersecurity measures to protect against such threats.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.