BlackSuit Ransomware Hits Neighbors Credit Union in St. Louis

Incident Date: Oct 18, 2024

Attack Overview
VICTIM
Neighbors Credit Union
INDUSTRY
Finance
LOCATION
USA
ATTACKER
Black Suit
FIRST REPORTED
October 18, 2024

Ransomware Attack on Neighbors Credit Union by BlackSuit Group

Neighbors Credit Union, a prominent financial institution based in St. Louis, Missouri, has fallen victim to a ransomware attack orchestrated by the notorious BlackSuit group. This incident highlights the ongoing threat that ransomware poses to financial institutions, emphasizing the need for enhanced cybersecurity measures.

About Neighbors Credit Union

Established in 1928, Neighbors Credit Union is a member-focused financial institution that operates on a cooperative model. It is the sixth largest credit union in the St. Louis area, with approximately $500 million in assets and serving around 45,000 members. The credit union offers a wide range of financial services, including checking and savings accounts, loans, and credit cards. Its commitment to community involvement and member satisfaction distinguishes it from traditional banks.

Attack Overview

The BlackSuit ransomware group claims to have breached Neighbors Credit Union's systems, exfiltrating sensitive data and fully leaking it on their dark web site. This breach potentially exposes confidential information related to the credit union's operations and its clients. The attack underscores the vulnerabilities financial institutions face, particularly those with significant digital operations and member data.

About BlackSuit Ransomware Group

BlackSuit, a successor to the Royal ransomware family, is known for its sophisticated tactics, including data exfiltration and extortion. The group employs a double extortion model, threatening to publish stolen data if ransoms are not paid. BlackSuit typically gains initial access through phishing emails, disabling antivirus software, and exfiltrating data before deploying ransomware. Their ransom demands can range from $1 million to $10 million, with payments usually requested in Bitcoin.

Potential Vulnerabilities

Financial institutions like Neighbors Credit Union are attractive targets for ransomware groups due to the sensitive nature of the data they handle. The credit union's emphasis on online banking services, while beneficial for members, also presents potential vulnerabilities. Cybersecurity measures must be continuously updated to protect against sophisticated threats like those posed by BlackSuit.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.