Hacked Law Firm May Have Had Unpatched Pulse Secure VPN

Hacked Law Firm May Have Had Unpatched Pulse Secure VPN

Cybercrime , Fraud Management & Cybercrime , Fraud Risk Management

REvil Gang Still Threating to Release More Data Scott Ferguson (Ferguson_Writes) • May 21, 2020    

A recent ransomware attack that targeted a law firm that serves celebrities may have been facilitated by a Pulse Secure VPN server that was not properly patched and mitigated against a well-known vulnerability, some security experts say.


The New York law firm of Grubman Shire Meiselas and Sacks, which represents many celebrities, including Lady Gaga, Madonna, Mariah Carey, U2, Bruce Springsteen and Mary J. Blige, is being extorted by the operators of the REvil ransomware variant who are asking for $42 million in ransom under the threat of releasing more documents it stole related to the firm's roster of clients (see: Ransomware Gang Demands $42 Million From Celebrity Law Firm ).


See Also: Role of Deception in the 'New Normal'


Late last week, the REvil gang, also known as known Sodin and Sodinokibi, released over 2 GB of legal documents and other information concerning the law firm's work for Lady Gaga, and now it's threatening to release more data, according to a post on the gang's darknet web portal.


The REvil gang also claims to have data from the law firm related to President Donald Trum ..

Support the originator by clicking the read the rest link below.