Bonatra Hit by KillSec Ransomware, Patient Data Compromised

Incident Date: Aug 07, 2024

Attack Overview
VICTIM
Bonatra
INDUSTRY
Healthcare Services
LOCATION
India
ATTACKER
Killsec
FIRST REPORTED
August 7, 2024

Ransomware Attack on Bonatra by KillSec

Bonatra, a holistic healthcare company specializing in managing and reversing chronic diseases through the integration of medical science, data science, and technology, has recently fallen victim to a ransomware attack by the cybercriminal group KillSec. The attack has compromised sensitive patient data, and the attackers are demanding a ransom of 4,000 euros to restore access.

About Bonatra

Bonatra operates in the healthcare services sector, focusing on personalized treatment plans for chronic diseases such as diabetes and hypertension. The company employs between 11 to 50 individuals and has garnered positive feedback from over 2,300 satisfied customers. Bonatra's innovative approach includes the use of Continuous Glucose Monitoring (CGM) technology and AI-driven health management plans, making it a standout in the industry.

Vulnerabilities and Attack Overview

Despite its technological advancements, Bonatra's reliance on digital health data and real-time monitoring systems makes it a prime target for ransomware attacks. The recent breach by KillSec highlights the vulnerabilities in Bonatra's cybersecurity measures. The attackers have specifically targeted patient data, compromising sensitive information and demanding a ransom for its release.

About KillSec

KillSec, also known as Kill Security, is a notorious ransomware group that has targeted various industries, including healthcare, government, and finance. The group is known for its use of multiple communication channels and crypto wallets, primarily Monero (XMR), to conduct its operations. KillSec has been active in several countries, including India, the United States, and the United Kingdom, demanding extortion amounts ranging from 1,500 to 10,000 euros.

Penetration Methods

While the exact method of penetration in Bonatra's case is not disclosed, KillSec typically employs phishing attacks, exploiting software vulnerabilities, and leveraging weak security protocols to infiltrate systems. The group's sophisticated tactics and the absence of a decryptor for their ransomware make them a formidable threat to organizations lacking robust cybersecurity defenses.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.