Categories: cyber securityMalware

Florence City to Pay $300,000 as Ransom After their System was Infected with Ransomware

In late May, threat actors infiltrated information technology systems of Florence City in Alabama and infected with ransomware. The city’s IT department along with outside agency is working to investigate the attack.

KrebsOnSecurity alerted by several City of Florence officials that they had been hit with ransomware operators and they are demanding $300,000 ransom worth of bitcoin.

Florence’s city mayor was alerted by KrebsOnSecurity, that their Windows 10 system in their IT environment controlled by threat actors.

“Comparing the information shared by Hold Security dark web specialist Yuliana Bellini with the employee directory on the Florence website indicated the username for the computer that attackers had used to gain a foothold belongs city’s manager of information systems.”

Florence city Mayor Steve Holt confirmed that cyberattacks had shut down the city’s email system. A system administrator who contacted Krebs stated that the compromised computer and network account had been isolated.

“We’re having to approach it from the standpoint that we’re going to have to assume—we know they have some of our information, we don’t know that they have our critical information, frankly don’t think they do but we don’t know,” Mayor Holt said.

Now the city officials planned to pay the ransom demand to keep the personal data of their citizens safe from the expose.

The city-systems infected with DoppelPaymer ransomware strain first observed in June 2019, the ransomware known for asking ransom payments between $25,000 to $1,200,000 worth of Bitcoin.

Here is the DoppelPaymer ransomware note;

DoppelPaymer ransomware known for stealing data from victims before launching the ransomware and threatens to publish data online if the ransom not paid.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

How to Conduct a Cloud Security Assessment

Cloud adoption has transformed organizations' operations but introduces complex security challenges that demand proactive leadership…

3 hours ago

U.S DOGE Allegedly Breached – Whistleblower Leaked Most Sensitive Documents

A federal whistleblower has accused the Department of Government Efficiency (DOGE) of orchestrating a major…

4 hours ago

Building a Security First Culture – Advice from Industry CISOs

In today’s threat landscape, cybersecurity is no longer confined to firewalls and encryption it’s a…

5 hours ago

Microsoft Prevents Billions of Dollars in Fraud and Scams

Microsoft has reported significant strides in thwarting financial fraud across its ecosystem. From April 2024…

5 hours ago

State Sponsored Hackers now Widely Using ClickFix Attack Technique in Espionage Campaigns

The state-sponsored hackers from North Korea, Iran, and Russia have begunp deploying the ClickFix social…

5 hours ago

Critical AnythingLLM Vulnerability Exposes Systems to Remote Code Execution

A critical security flaw (CVE-2024-13059) in the open-source AI framework AnythingLLM has raised alarms across cybersecurity communities.…

6 hours ago