Ransomware gang leaks data stolen from City of Oakland

Ransomware attack on a computer
(Image credit: Kaspersky)

Data stolen from the City of Oakland in a ransomware attack last month has begun to find its way onto the dark web, reports have claimed.

The Play Ransomware threat actor has updated its leak website with data stolen from the City during the ransomware attack in mid-February, BleepingComptuer has reported. 

For now, the group leaked a total of 10 gigabytes of data, split into multiple RAR archives. Whether or not the group publishes more content, remains to be seen, but the leaked caches reportedly contain plenty of sensitive employee information, more than enough for threat actors to run identity theft campaigns.

Sensitive data leaked

"Private and personal confidential data, financial information. IDs, passports, employee full info, human rights violation information. For now partially published compressed 10gb," the threat actor’s website said.

The City of Oakland also responded to the latest development, saying it’s keeping an eye on the situation and will notify affected individuals accordingly:

"While the investigation into the scope of the incident impacting the City of Oakland remains ongoing, we recently became aware that an unauthorized third party has acquired certain files from our network and intends to release the information publicly," the City’s statement reads.

"We are working with third-party specialists and law enforcement on this issue and are actively monitoring the unauthorized third party's claims to investigate their validity. If we determine that any individual's personal information is involved, we will notify those individuals in accordance with applicable law."

In the attack, the City was forced to take its IT systems offline, but emergency services remained operational.

In a short Twitter thread published at the time, the city said that its core services weren’t affected, but that customers should expect delays in other services.

Public sector organizations are a popular target for ransomware operators, so the attack on the City of Oakland should not come as a surprise.

In early January 2023, cybersecurity experts Emsisoft published a report stating that last year more than 200 large public sector organizations in the US were impacted by ransomware. Besides the government, threat actors are also going after the education and healthcare industries. In about half of the discovered incidents, the threat actors made away with sensitive data.

Via: BleepingComputer

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Data leak
Ransomware attackers leak stolen Rhode Island private info following hack
security
Ransomware gangs allegedly hit two major US healthcare firms, 300,000 patients have data stolen
ransomware avast
The biggest addiction treatment provider in the US says it was hit by data breach
Ransomware
Lee Enterprises blames cyberattack for encrypting critical systems as US newspaper outages drag on
Data leak
Hacked Tata Technologies data leaked by ransomware gang
A laptop with a red screen with a white skull on it with the message: "RANSOMWARE. All your files are encrypted."
Major ransomware attack sees Tata Technologies hit - 1.4TB dataset with over 730,000 files allegedly stolen
Latest in Security
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
Lock on Laptop Screen
Medusa ransomware is able to disable anti-malware tools, so be on your guard
An abstract image of digital security.
Fake file converters are stealing info, pushing ransomware, FBI warns
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Coinbase targeted after recent Github attacks
hacker.jpeg
Key trusted Microsoft platform exploited to enable malware, experts warn
IBM office logo
IBM to provide platform for flagship cyber skills programme for girls
Latest in News
Girl wearing Meta Quest 3 headset interacting with a jungle playset
Latest Meta Quest 3 software beta teases a major design overhaul and VR screen sharing – and I need these updates now
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
Hatch Restore 3 in Putty
You can finally start your day with The Office theme song, and I couldn't be more excited
Cassian Andor looking nervously over his shoulder in Andor season 2
New Andor season 2 trailer has got Star Wars fans asking the same question – and it includes an ominous call back to Rogue One's official teaser
Ncuti Gatwa as The Fifteenth Doctor in Doctor Who
Disney+ drops new trailer for Doctor Who season 2 that promises an epic adventure across time and space
23andMe
23andMe is bankrupt and about to sell your DNA, here's how to stop that from happening