EuroMedix Faces Ransomware Threat from SafePay Group

Incident Date: Nov 19, 2024

Attack Overview
VICTIM
EuroMedix
INDUSTRY
Healthcare Services
LOCATION
Belgium
ATTACKER
SafePay
FIRST REPORTED
November 19, 2024

Ransomware Attack on EuroMedix: A Detailed Analysis

On November 21, EuroMedix, a prominent player in the healthcare services sector, specializing in advanced medical screening and point-of-care products, fell victim to a ransomware attack orchestrated by the SafePay group. This incident has raised significant concerns about the cybersecurity measures in place at EuroMedix and the potential repercussions for their clientele.

About EuroMedix

EuroMedix is renowned for its innovative approach to preventive healthcare, focusing on cardiometabolic health and advanced risk management. The company offers state-of-the-art solutions for the early detection and management of health conditions, including technologies for measuring non-fasting LDL cholesterol and Lipoprotein(a). Headquartered in Slovakia, EuroMedix operates across Germany, Belgium, and France, employing between 100 to 149 individuals. Their commitment to integrating cutting-edge technology into healthcare practices sets them apart in the industry.

Attack Overview

The SafePay ransomware group executed a double-extortion attack on EuroMedix, resulting in the theft of 105GB of sensitive data. This tactic involves encrypting files and threatening to release stolen data unless a ransom is paid. The breach has not only disrupted EuroMedix's operations but also posed a significant risk to the privacy and security of their clients' information.

About SafePay Ransomware Group

SafePay is a relatively new but increasingly notorious ransomware group known for its use of ransomware-as-a-service (RaaS) and the LockBit source code. Their modus operandi involves a stealthy infiltration of networks, often through valid credentials obtained via VPN gateways. SafePay's double-extortion strategy and meticulous operational security distinguish them in the cybercrime landscape, making them a formidable threat to organizations across various sectors.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.