RansomHub's Target: Harman Realtors, Inc. Under Attack
Incident Date:
April 24, 2024
Overview
Title
RansomHub's Target: Harman Realtors, Inc. Under Attack
Victim
Harman Realtors, Inc.
Attacker
Ransomhub
Location
First Reported
April 24, 2024
Ransomware Attack on Harman Realtors, Inc. by RansomHub
Company Profile
Harman Realtors, Inc., established in 1955, is a family-owned commercial real estate firm based in La Jolla, California. The company specializes in property management, construction management, leasing, and brokerage services for commercial properties across Southern California. Led by Athena Z. Harman, the firm is recognized for handling complex transactions in the real estate sector. Despite its long-standing presence and industry expertise, Harman Realtors, Inc. maintains a relatively small operation with only 11 employees and an annual revenue of approximately $10 million.
Details of the Attack
The ransomware group RansomHub has claimed responsibility for a cyberattack on Harman Realtors, Inc., announcing the breach on their dark web leak site. According to the group, more than 80GB of sensitive data was exfiltrated, including information from accounting, human resources, sales, and leasing departments. The attackers have made the file tree of the stolen data publicly available, indicating the severity of the breach.
The ransom note suggests that the attackers exploited vulnerabilities in the IT infrastructure managed by CYNC Solutions, the external IT support provider for Harman Realtors, Inc. This breach not only compromised Harman's operations but also potentially affected other companies supported by the same IT provider.
Vulnerabilities and Industry Impact
Harman Realtors, Inc.'s reliance on an external IT provider appears to have been a critical vulnerability that was exploited in this attack. The firm's small size and possibly limited cybersecurity measures might have made it an easier target for the attackers. Moreover, the real estate industry deals with large volumes of sensitive financial and personal information, making firms like Harman Realtors, Inc. attractive targets for cybercriminals looking to leverage stolen data for financial gain.
Sources
Recent Ransomware Attacks
The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.
The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.