Barbados Statistical Service Hit by SafePay Ransomware Attack
Ransomware Attack on Barbados Statistical Service by SafePay
About the Barbados Statistical Service
The BSS is the principal statistical agency of Barbados, established in 1956 with assistance from the United Nations. It plays a crucial role in providing reliable and timely economic and social statistics, supporting decision-making across various sectors. The agency is structured into four main divisions, each focusing on specific areas such as business surveys, census and surveys, trade and national accounts, and socio-economic statistics. Despite its vital role, the BSS has faced challenges in data collection efficiency and response rates, which may have contributed to its vulnerability to cyber threats.
Details of the Attack
On November 21, the Barbados Statistical Service (BSS), a key governmental agency under the Ministry of Economic Affairs and Investment, was targeted by the ransomware group SafePay. This attack resulted in the exfiltration of 330GB of sensitive data, raising significant concerns about the cybersecurity measures in place within the agency.
SafePay Ransomware Group
SafePay distinguishes itself by utilizing LockBit source code and maintaining a presence on the dark web through a Tor-based leak site. The group has been involved in at least 22 confirmed attacks, employing sophisticated methods to infiltrate networks. SafePay typically gains access through valid credentials, often acquired via VPN gateways, and does not commonly use Remote Desktop Protocol for access, indicating a stealthy approach to infiltration.
Implications and Concerns
The attack on the BSS underscores the growing threat posed by ransomware groups like SafePay, particularly to governmental agencies that handle sensitive data. The breach not only compromises the integrity of the BSS's data but also raises broader concerns about the security of national statistical information. As ransomware tactics continue to evolve, it is imperative for organizations to bolster their cybersecurity measures to protect against such threats.
Sources
See Halcyon in action
Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!