US nuclear weapons supplier hit by ransomware attack

cybercriminal
(Image credit: Pixabay)

A US defense contractor has reportedly been targeted by the REvil ransomware gang, which has shared snippets of the exfiltrated data as proof of the attack.

Bleeping Computer caught hold of a posting on the dark web where REvil listed the names and shared details about their victims. One of the companies mentioned was Sol Oriens, who contracts with various government agencies including the US Department of Defense, and Department of Energy.

In a statement to CNBC’s Senior Washington correspondent Eamon Javers, Sol Oriens has confirmed losing data in a cyberattack in May 2021.

“In May 2021, Sol Oriens became aware of a cybersecurity incident that impacted our network environment. The investigation is ongoing, but we recently determined that an unauthorized individual acquired certain documents from our systems,” read the statement shared with Javers.

No classified details

Sol Oriens further added that it is working with third-party digital forensics experts to gauge the extent and scope of the stolen data.

In the posting that Bleeping Computer saw on the dark web, REvil itself claims to have obtained payroll data, including salary information and social security numbers of its Sol Oriens’ employees.

The threat actors even published images of a hiring overview document, payroll documents, and a wages report, to substantiate their claims. They also threatened that if the contractor doesn’t pony up, REvil will share the data with rival military agencies.

Security experts believe REvil, which is thought to be behind the recent attack on major meat processing company JBS, is said to operate out of Russia or one of the other former Soviet states

Experts suggest these countries turn a blind eye to their activities as long as they don’t target victims within their borders. However, in a joint statement leaders from the G7 countries have asked Russia to rein in the threat actors operating within its jurisdiction.

While one such ransomware group, Avaddon has closed shop, REvil seems to continue to operate with impunity.

Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
An American flag flying outside the US Capitol building against a blue sky
US military and defense contractors hit with Infostealer malware
An American flag flying outside the US Capitol building against a blue sky
More alleged Chinese intrusions into the US Treasury revealed
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
59 organizations reportedly victim to breaches caused by Cleo software bug
Russia
Major Russian hacking group shifts focus to US and UK targets
Lock on Laptop Screen
Clop ransomware lists Cleo cyberattack victims
Cl0p ransomware group says it was behind Cleo attacks
Latest in Security
An American flag flying outside the US Capitol building against a blue sky
Sean Plankey selected as CISA director by President Trump
Ai tech, businessman show virtual graphic Global Internet connect Chatgpt Chat with AI, Artificial Intelligence.
Nation-state threats are targeting UK AI research
Scam alert
Fake jobs and phone calls: How Americans lost $12.5 bn to fraud in 2024
Application Security Testing Concept with Digital Magnifying Glass Scanning Applications to Detect Vulnerabilities - AST - Process of Making Apps Resistant to Security Threats - 3D Illustration
Google bug bounty payments hit nearly $12 million in 2024
Scam alert
A new SMS energy scam is using Elon Musk’s face to steal your money
Representational image of a cybercriminal
Allstate sued for exposing personal customer information in plaintext
Latest in News
Vision Pro Metallica
Apple Vision Pro goes off to never never land with Metallica concert footage
Mufasa is joined by another lion, a monkey and a bird in this promotional image
Mufasa: The Lion King prowls onto Disney+ as it finally gets a streaming release date
An American flag flying outside the US Capitol building against a blue sky
Sean Plankey selected as CISA director by President Trump
An Nvidia GeForce RTX 4060 on a table with its retail packaging
Nvidia RTX 5060 GPU spotted in Acer gaming PC, suggesting rumors of imminent launch are correct – and that it’ll run with only 8GB of video RAM
Indiana Jones talking to a friend in a university setting with a jaunty smile on his face
New leak claims Indiana Jones and the Great Circle PS5 release will come in April
A close up of the limited edition vinyl turntable wrist watch from AndoAndoAndo
This limited-edition timepiece turns the iconic Technics SL-1200 turntable into a watch, and I want one