Ransomware Breach at Matouk Bassiouny by RA World Group

Incident Date: Oct 25, 2024

Attack Overview
VICTIM
Matouk Bassiouny
INDUSTRY
Law Firms & Legal Services
LOCATION
Egypt
ATTACKER
Ra World
FIRST REPORTED
October 25, 2024

Ransomware Attack on Matouk Bassiouny by RA World Group

Matouk Bassiouny, a leading law firm in the MENA region, has fallen victim to a ransomware attack orchestrated by the RA World group. The attack, which was discovered on October 26, has resulted in the exfiltration of approximately 300 GB of sensitive data, posing significant risks to the firm's operations and client confidentiality.

About Matouk Bassiouny

Established in 2005, Matouk Bassiouny is a full-service law firm headquartered in Cairo, Egypt, with offices in Dubai, Abu Dhabi, Khartoum, Algiers, and a satellite office in New York. The firm employs over 250 lawyers and is recognized for its expertise in corporate law, finance, capital markets, and dispute resolution. Its strong relationships with regulatory authorities and its multilingual team enhance its ability to serve a diverse clientele, including multinational corporations and government entities.

Attack Overview

The RA World ransomware group claims to have infiltrated Matouk Bassiouny's systems, exfiltrating a wide array of critical information, including legal and financial documents, customer details, business contracts, and sensitive personal data. This breach highlights the vulnerabilities that even well-established firms face in the digital age, particularly those handling sensitive legal matters.

RA World Ransomware Group

RA World, previously known as the RA Group, emerged in April 2023 and is notorious for its double extortion tactics. The group not only encrypts data but also exfiltrates it to pressure victims into paying ransoms. It primarily targets organizations in the United States, Europe, and the Indo-Pacific region, focusing on sectors such as healthcare and finance. The group employs sophisticated methods, including phishing emails and exploiting weak credentials, to gain initial access to systems.

Potential Vulnerabilities

Matouk Bassiouny's extensive operations across multiple jurisdictions and its handling of sensitive legal and financial data make it an attractive target for cybercriminals. The firm's reliance on digital systems for managing complex legal matters and client information may have presented vulnerabilities that the RA World group exploited. The attack underscores the importance of cybersecurity measures, particularly for firms operating in high-stakes industries like law and finance.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.