Sanglier Limited Hit by Meow Ransomware Exposing Sensitive Data

Incident Date: Oct 21, 2024

Attack Overview
VICTIM
Sanglier Limited
INDUSTRY
Manufacturing
LOCATION
United Kingdom
ATTACKER
Meow
FIRST REPORTED
October 21, 2024

Ransomware Attack on Sanglier Limited: A Detailed Analysis

Sanglier Limited, a UK-based manufacturer specializing in construction adhesives, has recently been targeted by the Meow Ransomware group. This attack has significant implications for both Sanglier and its parent company, H.B. Fuller, a global leader in adhesive technologies.

Company Profile: Sanglier Limited

Established in 2002, Sanglier Limited has carved a niche in the manufacturing of sprayable adhesives and related chemical products. With approximately 26 employees, the company is recognized for its expertise in the production, filling, packaging, and distribution of adhesives, solvents, and other chemical products. The acquisition by H.B. Fuller in September 2023 has further bolstered its market presence in Europe, enhancing its capabilities in the construction and engineering adhesives sectors.

Attack Overview

The Meow Ransomware group has claimed responsibility for the attack on Sanglier Limited, demanding a ransom of $20,000 for the release of over 43 GB of sensitive data. This data reportedly includes employee personal details, client contact information, commercial agreements, financial documents, and medical records. The breach poses a significant threat to Sanglier's operations and could potentially impact H.B. Fuller's strategic goals and market position.

About Meow Ransomware Group

Emerging in late 2022, the Meow Ransomware group is known for its use of the ChaCha20 and RSA-4096 encryption algorithms. The group has been active in targeting industries with sensitive data, primarily in the United States. They employ various infection methods, including phishing emails and exploiting RDP vulnerabilities. The group is distinguished by its data leak site, where they list victims who have not paid the ransom.

Potential Vulnerabilities

Sanglier Limited's involvement in international trade and its recent acquisition by a major industry player may have made it an attractive target for threat actors. The company's handling of sensitive data, including commercial agreements and employee information, presents vulnerabilities that could be exploited by ransomware groups like Meow. The attack underscores the importance of cybersecurity measures, particularly for companies involved in critical supply chains.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.