Ransomware Attack on Guy's Floor Service Inc.: Cybersecurity Concerns

Incident Date:

April 4, 2024

World map

Overview

Title

Ransomware Attack on Guy's Floor Service Inc.: Cybersecurity Concerns

Victim

Guy's Floor Service Inc.

Attacker

Play

Location

Denver, USA

Colorado, USA

First Reported

April 4, 2024

Ransomware Attack on Guy's Floor Service Inc.

Company Overview

A prominent provider of comprehensive solutions for flooring, tile, stone, and countertops recently fell victim to a ransomware attack by the group known as "play". Guy's Floor Service Inc, established in 1972, specializes in offering asphalt tile, carpeting, linoleum, and resilient flooring. They operate two design center locations, three divisions, and a large-scale fabrication facility. With a workforce of 135 employees, some have dedicated nearly three decades to the company. Their projects on Procore typically average around $17.9 million USD in size.

Vulnerabilities and Targeting

The ransomware group play which has attacked the company is known for targeting various industries, including construction, and has been observed using tactics such as exploiting known vulnerabilities and abusing legitimate remote monitoring and management (RMM) tools for persistence on compromised systems. Play Ransomware has targeted a wide range of organizations, with a focus on smaller organizations capable of ransom payments around $1 million.

Industry Concerns

The attack on Guy's Floor Service Inc. highlights the ongoing threat of ransomware to businesses in the Construction sector. As the industry continues to digitize and rely on technology for operations, cybersecurity vulnerabilities become increasingly critical. Companies must prioritize cybersecurity measures to protect against such attacks and minimize potential damage.

Sources:

Sources:

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.