daixin attacks ISTA International GmbH

Incident Date: Aug 09, 2022

Attack Overview
VICTIM
ISTA International GmbH
INDUSTRY
Energy, Utilities & Waste
LOCATION
Germany
ATTACKER
Daixin
FIRST REPORTED
August 9, 2022

ISTA International GmbH Suffers Ransomware Attack by Daixin Team

ISTA International GmbH, an international institute based in Vienna, Austria, has been targeted by the ransomware group Daixin Team. The attack was announced on the group's dark web leak site, claiming to have encrypted thousands of servers at the company. ISTA International operates in the Energy, Utilities & Waste sector and is known for its research and development in the field of science and technology.

The company's website, provides information about their services and projects, including research collaborations with various universities and institutions. ISTA International's size and industry position make it a valuable target for cybercriminals, as the Energy, Utilities & Waste sector is often targeted due to the sensitive nature of the data and systems involved.

The vulnerabilities that led to ISTA International being targeted by Daixin Team are not explicitly mentioned in the available sources. However, it is known that the company was affected by a ransomware attack in November 2022, which resulted in the leak of personal data belonging to five million unique passengers and all of its employees from AirAsia, a Malaysian low-cost airline. This suggests that ISTA International may have had insufficient security measures in place, allowing the attackers to gain access to their systems and data.

In response to the attack, ISTA International took its systems offline to mitigate the damage and prevent further data breaches. The company's immediate communication about the incident is commended by cybersecurity experts, indicating that they have a robust incident response plan in place.

The Daixin Team has been active in the cybercrime landscape, targeting various industries, including healthcare and finance. The group has been the subject of advisories from U.S. cybersecurity and intelligence agencies, warning of their attacks on organizations worldwide.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.