Cybersecurity Breach at Feldstein & Stewart CPAs, LLP

Incident Date: Apr 12, 2024

Attack Overview
VICTIM
Feldstein & Stewart CPAs, LLP
INDUSTRY
Business Services
LOCATION
USA
ATTACKER
Play
FIRST REPORTED
April 12, 2024

Ransomware Attack on Feldstein & Stewart CPAs, LLP

Company Profile

Feldstein & Stewart CPAs, LLP, a CPA firm based in New York, provides accounting, auditing, tax, and consulting services to individuals, businesses, and non-profit organizations. The firm is known for having multiple partners, including Mark Stewart, CPA, indicating a moderate to large size.

Industry Standing

This auditing and accounting firm operates in the Business Services sector, offering a range of financial services similar to other CPA firms. The company's profile on ransomlook.io showcases their expertise in accounting and financial management.

Vulnerabilities

The Play Ransomware group targeted Feldstein & Stewart CPAs, LLP, exploiting vulnerabilities such as exposed RDP servers and known software vulnerabilities like FortiOS and Microsoft Exchange. The group employs a double-extortion model, exfiltrating sensitive data before encrypting systems with AES-RSA hybrid encryption and adding a ".play" extension to file names.

Sources:

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.