Brett Slater Solicitors Targeted by Akira Ransomware Group

Incident Date: May 28, 2024

Attack Overview
VICTIM
Brett Slater Solicitors
INDUSTRY
Law Firms & Legal Services
LOCATION
Australia
ATTACKER
Akira
FIRST REPORTED
May 28, 2024

Ransomware Attack on Brett Slater Solicitors

Company Overview

Brett Slater Solicitors is a renowned immigration law firm based in Sydney, Australia. The firm specializes in providing immigration legal services, including visa applications, permanent residency, and citizenship. With over 30 years of experience, the firm has established a reputation for its high success rate of 98.9% in handling immigration cases.

Company Size and Standout

Operating with a team of experienced solicitors and registered migration agents, led by Principal Solicitor Abraham Ishkhanian, Brett Slater Solicitors stands out for its exceptional success rate and a comprehensive range of immigration services. These services include business visas, skilled visas, family visas, and appeals.

Company Vulnerabilities

As a law firm dealing with sensitive legal and personal information, Brett Slater Solicitors is a prime target for threat actors like the Akira ransomware group. The firm's extensive database of client documents, court records, and other confidential data makes it an attractive target for ransomware attacks.

Ransomware Attack Overview

The Akira ransomware group recently targeted Brett Slater Solicitors, leaking sensitive data including personal documents of clients from various countries, court records, and other confidential information. The group's ransom note indicated their intent to expose the firm's data unless a ransom is paid.

Ransomware Group Profile

Akira is a rapidly growing ransomware family that has been targeting businesses across different sectors, including legal services. Known for its double extortion tactics, Akira steals data before encrypting systems and demands a ransom for decryption and data deletion. The group's unique dark web leak site and evolving tactics make them a significant threat in the cybersecurity landscape.

Possible Penetration Points

Akira could have penetrated Brett Slater Solicitors' systems through unauthorized access to VPNs, credential theft, or deploying a backdoor. The group's use of tools like RClone, FileZilla, and WinSCP for data exfiltration indicates a sophisticated approach to breaching networks and compromising sensitive data.

Sources:

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.