Ransomware Breach at Matouk Bassiouny by RA World Group
Ransomware Attack on Matouk Bassiouny by RA World Group
Matouk Bassiouny, a leading law firm in the MENA region, has fallen victim to a ransomware attack orchestrated by the RA World group. The attack, which was discovered on October 26, has resulted in the exfiltration of approximately 300 GB of sensitive data, posing significant risks to the firm's operations and client confidentiality.
About Matouk Bassiouny
Established in 2005, Matouk Bassiouny is a full-service law firm headquartered in Cairo, Egypt, with offices in Dubai, Abu Dhabi, Khartoum, Algiers, and a satellite office in New York. The firm employs over 250 lawyers and is recognized for its expertise in corporate law, finance, capital markets, and dispute resolution. Its strong relationships with regulatory authorities and its multilingual team enhance its ability to serve a diverse clientele, including multinational corporations and government entities.
Attack Overview
The RA World ransomware group claims to have infiltrated Matouk Bassiouny's systems, exfiltrating a wide array of critical information, including legal and financial documents, customer details, business contracts, and sensitive personal data. This breach highlights the vulnerabilities that even well-established firms face in the digital age, particularly those handling sensitive legal matters.
RA World Ransomware Group
RA World, previously known as the RA Group, emerged in April 2023 and is notorious for its double extortion tactics. The group not only encrypts data but also exfiltrates it to pressure victims into paying ransoms. It primarily targets organizations in the United States, Europe, and the Indo-Pacific region, focusing on sectors such as healthcare and finance. The group employs sophisticated methods, including phishing emails and exploiting weak credentials, to gain initial access to systems.
Potential Vulnerabilities
Matouk Bassiouny's extensive operations across multiple jurisdictions and its handling of sensitive legal and financial data make it an attractive target for cybercriminals. The firm's reliance on digital systems for managing complex legal matters and client information may have presented vulnerabilities that the RA World group exploited. The attack underscores the importance of cybersecurity measures, particularly for firms operating in high-stakes industries like law and finance.
Sources
See Halcyon in action
Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!