Rangia Municipal Board Faces Funksec Ransomware Breach

Incident Date: Dec 15, 2024

Attack Overview
VICTIM
Rangia Municipal Board
INDUSTRY
Government
LOCATION
India
ATTACKER
Funksec
FIRST REPORTED
December 15, 2024

Rangia Municipal Board Targeted by Funksec Ransomware Attack

On December 16, the Rangia Municipal Board, a key local government body in Assam, India, became the latest victim of a ransomware attack by the cybercrime group Funksec. This incident highlights the growing threat of ransomware attacks on municipal bodies, which often manage sensitive data and critical infrastructure.

About Rangia Municipal Board

Established in 1956, the Rangia Municipal Board is responsible for the administration and development of Rangiya town in the Kamrup district. It oversees essential services such as urban infrastructure, public health, sanitation, and water supply for a population of approximately 27,889 residents. The board operates under the Assam Municipal Act, 1956, and is divided into 10 wards, with elections held every five years. Despite its relatively small size, the board plays a crucial role in urban planning and community services, making it a significant entity within the local government framework.

Details of the Ransomware Attack

The attack by Funksec involved the exfiltration of a database exceeding 300MB, containing potentially sensitive information, including personally identifiable information (PII). Funksec substantiated their claim by releasing four screenshots of the exfiltrated files on their dark web leak site. This breach underscores the vulnerabilities municipal bodies face, particularly in terms of cybersecurity infrastructure and data protection measures.

Profile of Funksec Ransomware Group

Funksec is an emerging ransomware group first observed in December 2024. Known for its double extortion tactics, the group combines data exfiltration with encryption to pressure victims into paying ransoms. Funksec operates a Tor-based data-leak site, where it hosts breach announcements and other cybercriminal tools. The group has claimed responsibility for over 10 breaches across various industries, including media, IT, and education, targeting organizations in multiple countries.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.