Pathsala Municipal Board Targeted by Funksec Ransomware Attack

Incident Date: Dec 15, 2024

Attack Overview
VICTIM
Pathsala Municipal Board
INDUSTRY
Government
LOCATION
India
ATTACKER
Funksec
FIRST REPORTED
December 15, 2024

Ransomware Attack on Pathsala Municipal Board by Funksec

On December 16, the Pathsala Municipal Board (PMB), a key local government entity in Assam, India, became the latest victim of a ransomware attack by the cybercrime group Funksec. This incident has raised significant concerns about the security of municipal data and the potential disruption of essential services.

Victim Profile: Pathsala Municipal Board

The Pathsala Municipal Board is responsible for managing municipal services in Pathsala, a town in the Bajali District of Assam. With a population of approximately 18,233, the PMB oversees critical functions such as water supply, waste management, and infrastructure development. Pathsala is distinguished by its rich cultural heritage and high literacy rate, making it a notable educational hub in the region. The board operates with a small administrative framework, managing around 2,759 houses within its jurisdiction. Despite its significant role, the PMB's limited resources and small-scale operations may have made it vulnerable to cyber threats.

Attack Overview

The ransomware attack by Funksec has left the extent of the data breach undetermined, with the size of the leak still unknown. The attack has sparked concerns about the PMB's ability to protect sensitive data and maintain the delivery of essential services. As of now, the Pathsala Municipal Board has not issued an official statement, leaving the community in anticipation of further details on the breach's implications and the measures being taken to address the situation.

Funksec: The Ransomware Group

Funksec, an emerging cybercrime group, has been active since December 2024, targeting various industries across the globe. Known for employing double extortion tactics, Funksec combines data exfiltration with encryption to pressure victims into compliance. Their operations are characterized by a Tor-based data-leak site, which hosts breach announcements and other cybercriminal tools. Funksec's activities suggest a potential role as a data broker, diversifying its extortion methods. The group's ability to penetrate the PMB's systems could be attributed to exploiting vulnerabilities in the board's cybersecurity infrastructure.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.