blackbasta attacks Jameco Electronics - Electronics Store & Distributo

Incident Date:

May 2, 2022

World map

Overview

Title

blackbasta attacks Jameco Electronics - Electronics Store & Distributo

Victim

Jameco Electronics - Electronics Store & Distributo

Attacker

Blackbasta

Location

Belmont, USA

California, USA

First Reported

May 2, 2022

Jameco Electronics Suffers Ransomware Attack

Company Overview

Jameco Electronics has been in business for over 50 years and is recognized as one of the largest distributors of electronic components and power supplies. The company boasts a comprehensive inventory of in-stock products, offering competitive prices across both name brands and their proprietary branded products. Additionally, Jameco provides tailored kitting programs, curriculum kits for universities and colleges, and specialized services for businesses, government agencies, and educational institutions.

Vulnerabilities and Impact

The recent ransomware attack on Jameco Electronics marks another cybersecurity incident for the company, following a similar event in 2022 that compromised HR files of current and former employees. This breach led to the unauthorized disclosure of sensitive personal information, including but not limited to full names, addresses, social security numbers, birthdates, pay rates, and banking details. While specific vulnerabilities exploited in these attacks have not been disclosed, the company has indicated ongoing reviews and enhancements of its technical policies and procedures to bolster security measures against future threats.

Threat Actor

The ransomware group Blackbasta, responsible for the latest attack on Jameco Electronics, is notorious for its data exfiltration and extortion practices. This includes deploying file-encrypting ransomware and employing aggressive extortion tactics such as DDoS attacks and direct harassment of the victims' customers and employees. Active since November 2021, Blackbasta operates on a ransomware-as-a-service (RaaS) model, highlighting the evolving and sophisticated nature of cybercriminal enterprises.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.