Olson Steel Inc. Targeted in Ransomware Attack by Black Basta

Incident Date: May 05, 2024

Attack Overview
VICTIM
Olson Steel Inc.
INDUSTRY
Construction
LOCATION
USA
ATTACKER
Blackbasta
FIRST REPORTED
May 5, 2024

Ransomware Attack on Olson Steel by Black Basta

Company Profile: Olson Steel Inc.

Olson & Co Steel Inc. is a prominent player in the construction sector, specializing in steel fabrication and erection. Founded in 2002, the company is headquartered in San Leandro, California. With a workforce of 251-500 employees, Olson Steel boasts annual revenues between $100 million and $250 million. The company stands out in its industry due to its integration of technology in detailing, fabrication, and erection processes, aiming for continuous improvement and innovation.

Details of the Cyber Attack

The ransomware group Black Basta, known for its sophisticated cyber attacks, has recently targeted Olson Steel. During the attack, approximately 900 GB of sensitive data was exfiltrated, including HR and accounting records, employee details, and confidential project files such as CAD drawings. This breach not only highlights the vulnerability of Olson Steel's cybersecurity defenses but also underscores the persistent threat posed by organized cybercriminal groups.

Black Basta Ransomware Group

Emerging in early 2022, Black Basta has quickly become notorious in the cybercrime arena. The group is known for its double extortion tactics, involving data encryption and threats of public data leakage. Black Basta uses the XChaCha20 encryption algorithm and has connections with other major cybercriminal groups, suggesting a high level of sophistication and strategic cybercriminal alliances.

Potential Vulnerabilities and Attack Vectors

While specific details of the intrusion vector used in the Olson Steel attack remain undisclosed, common entry points for such attacks include phishing, exploitation of unpatched systems, or compromised credentials. Olson Steel's significant data repository and its critical role in construction projects make it an attractive target for ransomware groups seeking substantial ransom payouts.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.