Waters Truck and Tractor Breached by Fog Ransomware Group
Ransomware Attack on Waters Truck and Tractor by Fog Group
Waters Truck and Tractor, a well-established dealership in Columbus, Mississippi, has fallen victim to a ransomware attack orchestrated by the notorious Fog ransomware group. This incident highlights the growing threat of cyberattacks on the transportation sector, particularly targeting companies with significant operational and customer data.
Company Overview
Founded in 1938, Waters Truck and Tractor is a prominent player in the transportation industry, specializing in the sale and service of trucks, trailers, and buses. The company operates under the International Trucks and Idealease brands, offering a wide range of vehicles and comprehensive support services. With approximately 250 employees and multiple branches across Mississippi, Waters Truck and Tractor has built a reputation for providing tailored transportation solutions and superior customer support.
Details of the Attack
The Fog ransomware group claims to have accessed 3 GB of sensitive data from Waters Truck and Tractor. The compromised information includes customer contacts, internal financial documents, human resource files, personal medical documents, Social Security Numbers, personal Tax IDs, driver licenses, NDAs, and drug screen results. This breach poses significant risks to the privacy and security of the company's clients and employees.
Fog Ransomware Group
Fog ransomware, also known as "Lost in the Fog," is a variant of the STOP/DJVU ransomware family. The group is known for its sophisticated attack methods, including double extortion tactics where they encrypt data and threaten to leak it if the ransom is not paid. Fog typically gains access through compromised VPN credentials, weak RDP configurations, or phishing attacks. Once inside, they use tools like Cobalt Strike and Mimikatz to escalate privileges and move laterally across networks.
Vulnerabilities and Impact
Waters Truck and Tractor's extensive data handling and operational scope make it a lucrative target for ransomware groups like Fog. The company's reliance on digital systems for managing customer and financial information may have exposed vulnerabilities that the attackers exploited. This incident underscores the importance of effective cybersecurity measures, especially for companies in the transportation sector that handle sensitive data.
Sources
See Halcyon in action
Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!