Everest Ransomware Group Hits Italian Tech Firm Diogenet S.r.l., Leaks 115GB Data
Everest Ransomware Group Targets Diogenet S.r.l. in Major Cyber Attack
Company Profile: Diogenet S.r.l.
Diogenet S.r.l., an Italian technology company founded in 2000 and headquartered in Milan, specializes in providing advanced technological solutions and services in information technology, telecommunications, and data management. The company, which reported a revenue of €12.8 million in the most recent fiscal year, employs 42 full-time professionals. Diogenet is known for its expertise in developing custom telecommunications software and integrating cutting-edge technologies into its service offerings.
Attack Overview
The Everest ransomware group has claimed responsibility for a significant cyber attack on Diogenet S.r.l., leaking approximately 115 GB of data. The attack was announced on Everest's dark web leak site, although specific details about the types of data compromised have not been disclosed. This breach highlights vulnerabilities in Diogenet's cybersecurity measures, despite the company's focus on implementing robust protective measures.
Everest Ransomware Group Profile
Active since December 2020, the Everest ransomware group is notorious for its involvement in ransomware attacks, data exfiltration, and initial access brokering. The group has targeted nearly 100 organizations across various industries, including high-profile victims like AT&T and several South American government organizations. Everest employs a combination of compromised user accounts and Remote Desktop Protocol (RDP) for lateral movement, using AES and DES algorithms to encrypt files.
Penetration Tactics
Everest's penetration into Diogenet's systems likely involved exploiting vulnerabilities in network security, possibly through compromised user accounts or RDP. The group's increasing activity as an Initial Access Broker (IAB) suggests a sophisticated approach to gaining and selling access to compromised networks. This attack underscores the importance of continuous monitoring and updating of cybersecurity measures to defend against evolving threats.
Sources
See Halcyon in action
Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!