GoFormz Faces Ransomware Threat from KillSec Cyber Group

Incident Date: Nov 26, 2024

Attack Overview
VICTIM
GoFormz
INDUSTRY
Software
LOCATION
USA
ATTACKER
Killsec
FIRST REPORTED
November 26, 2024

Ransomware Attack on GoFormz by KillSec

GoFormz, a California-based technology company specializing in digital forms and data capture solutions, recently became the target of a ransomware attack by the notorious group KillSec. The attack, discovered on November 26, has raised concerns about the security of digital transformation platforms.

About GoFormz

Founded in 2012, GoFormz is a leader in the digital transformation space, offering a no-code platform that allows businesses to replace traditional paper forms with digital alternatives. The company serves over 3,000 customers across more than 150 countries, with an estimated annual revenue of $10 million to $11.8 million. GoFormz's standout features include offline capabilities and seamless integration with business systems like Salesforce and Microsoft 365, which enhance data management and operational efficiency.

Vulnerabilities and Targeting

GoFormz's reliance on cloud-based services and integrations may have made it vulnerable to cyber threats. The company's extensive use of digital forms and data capture solutions could have been an attractive target for KillSec, which is known for exploiting vulnerabilities in digital platforms. The attack underscores the risks associated with digital transformation, particularly for companies that handle sensitive data across multiple sectors.

Overview of the Attack

The ransomware attack on GoFormz was orchestrated by KillSec, a group known for its Ransomware as a Service (RaaS) platform. The extent of the data leak remains undetermined, but the incident highlights the growing threat of ransomware attacks on companies in the software sector. KillSec's RaaS model allows even less technically skilled individuals to deploy sophisticated ransomware attacks, making it a formidable threat in the cybercrime landscape.

About KillSec

KillSec, also known as KillSecurity, distinguishes itself through its RaaS platform, which democratizes access to ransomware tools. Founded in 2021, the group has been involved in various cybercriminal activities, including data breaches and website defacements. KillSec's tactics often involve exploiting vulnerabilities and using social engineering to execute their operations. Their focus on both ideological motivations and financial gain makes them a complex adversary in the cybersecurity domain.

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.