Ransomware Strikes DINAS Corp Disrupting Distribution Network

Incident Date: Sep 29, 2024

Attack Overview
VICTIM
DINAS Corp
INDUSTRY
Retail
LOCATION
USA
ATTACKER
Inc Ransom
FIRST REPORTED
September 29, 2024

Ransomware Attack on DINAS Corp by INC Ransom: A Detailed Analysis

DINAS Corp, a prominent wholesale distributor based in Jamaica, New York, has recently fallen victim to a ransomware attack orchestrated by the notorious cybercriminal group, INC Ransom. Specializing in Latin American ethnic products, DINAS Corp is known for its extensive distribution network across the northeastern United States, catering to both retail and food service sectors. The company employs approximately 22 to 23 individuals and reported an annual revenue of $33.2 million, highlighting its significant market presence.

DINAS Corp's commitment to quality and customer satisfaction, along with its active role in corporate social responsibility initiatives, distinguishes it in the retail sector. However, its import activities and extensive distribution network may have inadvertently exposed vulnerabilities, making it an attractive target for cybercriminals like INC Ransom.

Attack Overview

INC Ransom has claimed responsibility for infiltrating DINAS Corp's systems, exfiltrating sensitive business and customer data. This attack underscores the group's use of double extortion tactics, where they not only encrypt data but also threaten to release it publicly to pressure victims into paying the ransom. The breach potentially compromises critical information, posing significant risks to DINAS Corp's operations and reputation.

About INC Ransom

INC Ransom is a sophisticated ransomware group known for targeting various industries, including healthcare, education, and technology. The group employs advanced techniques such as spear-phishing and exploiting vulnerabilities like CVE-2023-3519 in Citrix NetScaler. Their ability to use both Commercial Off-The-Shelf software and legitimate system tools for reconnaissance and lateral movement within networks sets them apart in the cybercriminal landscape.

Potential Vulnerabilities

DINAS Corp's extensive import activities and reliance on digital systems for distribution and customer management may have presented entry points for INC Ransom. The group's expertise in exploiting system vulnerabilities and conducting spear-phishing campaigns could have facilitated their penetration into DINAS Corp's network, leading to the successful exfiltration of data.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.