lockbit3 attacks KKCS

Incident Date: Aug 26, 2022

Attack Overview
VICTIM
KKCS
INDUSTRY
Construction
LOCATION
USA
ATTACKER
Lockbit
FIRST REPORTED
August 26, 2022

KKCS, a Construction Management Firm, Suffers Ransomware Attack

Company Profile

KKCS, a full-service program management, project management, and construction management firm, has been targeted by the ransomware group Lockbit3. The attack was announced on the group's dark web leak site. KKCS operates in the Construction sector and boasts over 30 years of experience in providing consulting services for transportation, aviation, infrastructure, and facilities projects.

As a nationwide firm, KKCS possesses extensive experience in all phases of transportation projects, including light and heavy rail transit, high-speed rail, bus rapid transit, streetcar, commuter rail, intermodal stations, airports, freeways, highways, bridges, and roadways. The company's portfolio also extends to energy, water, and wastewater infrastructure, collaborating with transportation agencies, public works agencies, educational institutions, and private firms.

Vulnerabilities and Mitigation

Ransomware attacks frequently exploit vulnerabilities in software, outdated systems, or human error, such as clicking on malicious links or downloading infected attachments. To mitigate these risks, organizations are advised to adopt good cyber hygiene practices. These include regular vulnerability scanning, timely patching and updating of software, and educating employees on phishing scams and safe online practices.

Response and Recovery

In the wake of a ransomware attack, it is crucial for victims to immediately disconnect infected devices from the network, report the attack to federal law enforcement, and activate their backup and recovery plan. Paying the ransom is strongly discouraged, as it does not guarantee the recovery of data and may incentivize further attacks.

The ransomware attack on KKCS serves as a stark reminder of the persistent threat of cybercrime to businesses and organizations across various sectors. It emphasizes the critical need for robust cybersecurity measures, regular software updates, and comprehensive employee training to both prevent and effectively respond to such attacks.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.