Ransomware Attack Hits Ambica Steels by Hunters International
Ransomware Attack on Ambica Steels by Hunters International
Ambica Steels, a leading manufacturer in the stainless steel industry, recently became the target of a ransomware attack by the notorious group Hunters International. The breach, discovered on October 26, highlights the ongoing threat posed by cybercriminals to businesses across various sectors.
About Ambica Steels
Established in 1970, Ambica Steels is a prominent player in the manufacturing sector, specializing in stainless steel long products. Operating from its headquarters in New Delhi, India, the company boasts a workforce of over 5,000 employees. Known for its extensive range of high-quality products, Ambica Steels serves diverse industrial applications, making it a key player in the mining and metals industry. The company's significant financial growth, with revenues exceeding INR 500 crore for the fiscal year ending March 31, 2023, underscores its market presence.
Attack Overview
The ransomware attack orchestrated by Hunters International has raised concerns about the vulnerabilities faced by manufacturing companies like Ambica Steels. While the exact size of the data leak remains undisclosed, the incident underscores the persistent threat of cyberattacks. Hunters International, known for its sophisticated tactics, employs double extortion methods, encrypting files and threatening to publish stolen data if ransoms are not paid.
About Hunters International
Emerging in October 2023, Hunters International is a Ransomware-as-a-Service group that quickly gained notoriety by leveraging code from the defunct Hive ransomware. The group distinguishes itself through its adaptability, targeting both Windows and Linux environments. Their attacks are characterized by multi-stage operations, beginning with network reconnaissance and lateral movement before data exfiltration and encryption. Hunters International's use of the Rust programming language enhances their cross-platform targeting capabilities.
Potential Vulnerabilities
Manufacturing companies like Ambica Steels are particularly vulnerable to ransomware attacks due to their reliance on complex supply chains and critical infrastructure. Hunters International likely penetrated Ambica Steels' systems through common infection vectors such as phishing campaigns or exploiting remote services. The group's ability to bypass advanced security measures, as demonstrated in previous attacks, highlights the sophistication of their operations.
Sources
See Halcyon in action
Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!