Zetech University Hit by Funksec Ransomware Attack

Incident Date: Dec 14, 2024

Attack Overview
VICTIM
Zetech University
INDUSTRY
Education
LOCATION
Kenya
ATTACKER
Funksec
FIRST REPORTED
December 14, 2024

Ransomware Attack on Zetech University by Funksec

Zetech University, a leading private educational institution in Kenya, has become the latest victim of a ransomware attack orchestrated by the cybercrime group Funksec. The attack, which occurred on December 16, 2024, has raised concerns about cybersecurity vulnerabilities in the education sector.

About Zetech University

Located in Kiambu County, Kenya, Zetech University is renowned for its commitment to quality education and innovation. Established in 1999, the university has grown from its origins as Zetech College to a fully-fledged university offering a wide range of undergraduate and diploma programs. With an enrollment of approximately 5,000 to 5,999 students, Zetech University is recognized for integrating technology into its curriculum, preparing students for the modern job market. The institution's focus on innovation is exemplified by the Zetech Innovation Hub, which fosters creativity and entrepreneurship among students.

Details of the Ransomware Attack

The ransomware group Funksec has claimed responsibility for the attack on Zetech University, gaining unauthorized access to the university's administrative systems. Funksec is reportedly offering to sell this access for $1,000, as advertised in a "funknight event" on their dark web leak site. The extent of the data leak remains undisclosed, and the university has yet to issue an official statement regarding the breach or its potential impact on operations and stakeholders.

Funksec: A Notorious Ransomware Group

Funksec is an emerging cybercrime group known for its double extortion tactics, combining data exfiltration with encryption to pressure victims. The group operates a Tor-based data-leak site, where it hosts breach announcements and offers a free DDoS tool. Funksec has been linked to over 10 breaches across various industries, including education, media, and IT. The group's activities suggest a potential role as a data broker, diversifying its extortion methods.

Sources

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.