Hunters International Ransomware Attack Targets Seamon Whiteside: Key Details

Incident Date:

July 18, 2024

World map

Overview

Title

Hunters International Ransomware Attack Targets Seamon Whiteside: Key Details

Victim

Seamon Whiteside

Attacker

Hunters International

Location

Mt Pleasant, USA

South Carolina, USA

First Reported

July 18, 2024

Ransomware Attack on Seamon Whiteside by Hunters International

Overview of Seamon Whiteside

Seamon Whiteside, officially known as Seamon, Whiteside & Associates, Inc., is a prominent civil engineering and landscape architecture firm based in Mount Pleasant, South Carolina. Established in 1985, the company has grown to employ over 100 professionals and operates multiple offices across South Carolina and North Carolina, including locations in Charleston, Greenville, Spartanburg, and Charlotte. The firm specializes in the design and construction of residential neighborhoods, commercial developments, and public spaces, emphasizing sustainability and community engagement.

Details of the Ransomware Attack

Seamon Whiteside has recently fallen victim to a ransomware attack orchestrated by the Hunters International Ransomware group. The cybercriminals successfully infiltrated the company's systems, adding Seamon Whiteside to their growing list of targets. The attack was publicly claimed by Hunters International via their dark web leak site, highlighting the persistent threat posed by sophisticated ransomware groups.

About Hunters International

Hunters International is a Ransomware-as-a-Service (RaaS) group that emerged in Q3 of 2023, shortly after the disruption of the notorious Hive ransomware group. The group exhibits significant technical overlap with Hive, suggesting an evolution or offshoot of the dismantled operation. Hunters International's primary objective is to exfiltrate target data and subsequently extort victims with a ransom demand in exchange for the return of the stolen data. The group has been detected targeting victims across various regions, including the US, UK, Germany, and Namibia.

Potential Vulnerabilities

Seamon Whiteside's commitment to integrating evolving technologies and practices in their design philosophy may have inadvertently exposed them to cyber threats. The firm's extensive use of digital tools and collaborative platforms could have provided entry points for the ransomware group. Additionally, the company's significant size and multiple office locations might have complicated their cybersecurity posture, making it challenging to maintain uniform security measures across all sites.

Implications and Next Steps

The ransomware attack on Seamon Whiteside underscores the critical need for robust cybersecurity measures in the construction and engineering sectors. As ransomware groups like Hunters International continue to evolve and adapt, organizations must remain vigilant and proactive in their cybersecurity efforts to protect sensitive data and maintain operational integrity.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.