Holmes & Brakel Hit by Akira Ransomware Highlighting Cyber Risks

Incident Date:

October 2, 2024

World map

Overview

Title

Holmes & Brakel Hit by Akira Ransomware Highlighting Cyber Risks

Victim

Holmes & Brakel

Attacker

Akira

Location

Pickering, Canada

, Canada

First Reported

October 2, 2024

Ransomware Attack on Holmes & Brakel by Akira Group

Holmes & Brakel, a prominent Canadian company specializing in office furniture solutions, has fallen victim to a ransomware attack orchestrated by the notorious Akira group. This incident underscores the persistent threat posed by ransomware actors to businesses across various sectors, particularly those with extensive operations and valuable data assets.

Company Profile

Holmes & Brakel, also known as H+B, is a family-owned business with over 45 years of experience in the office furniture industry. Based in Pickering, Ontario, the company operates six locations across North America, serving a diverse clientele that includes Fortune 1000 companies. With approximately 113 employees and an annual revenue of $22.6 million, H+B is recognized for its comprehensive office solutions, which encompass consultation, design, project management, and installation services. The company's commitment to quality and customer service has established it as a trusted partner in the industry.

Attack Overview

The Akira ransomware group has claimed responsibility for the attack on Holmes & Brakel, asserting that they have successfully exfiltrated sensitive data from the company's systems. The attack highlights the vulnerabilities that even well-established businesses face in the digital age, particularly those with extensive networks and valuable client information. The specifics of how Akira penetrated H+B's systems remain unclear, but common methods include exploiting VPN vulnerabilities and using compromised credentials.

About Akira Ransomware Group

Emerging in March 2023, Akira has quickly gained notoriety for its sophisticated attack methods and extensive targeting capabilities. The group employs a hybrid encryption scheme combining ChaCha20 and RSA cryptography, making it a formidable threat. Akira is known for its double-extortion tactics, where it not only encrypts data but also threatens to publish it unless a ransom is paid. The group has targeted various sectors, including education, finance, and healthcare, with a significant focus on North American organizations.

Implications for Holmes & Brakel

The attack on Holmes & Brakel serves as a stark reminder of the importance of cybersecurity measures. As a company that handles sensitive client information and operates across multiple locations, H+B is an attractive target for ransomware groups like Akira. The incident emphasizes the need for businesses to continuously assess and strengthen their cybersecurity posture to protect against evolving threats.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.