Lane Supply Inc. Hit by BianLian Ransomware Attack: 1.4TB Data Compromised

Incident Date:

August 30, 2024

World map

Overview

Title

Lane Supply Inc. Hit by BianLian Ransomware Attack: 1.4TB Data Compromised

Victim

Lane Supply Inc.

Attacker

Bianlian

Location

Arlington, USA

Texas, USA

First Reported

August 30, 2024

Ransomware Attack on Lane Supply Inc. by BianLian Group

Lane Supply Inc., a national manufacturer, supplier, and installer of canopies and related components, has recently fallen victim to a ransomware attack orchestrated by the BianLian group. The company, established in 1950 and headquartered in Arlington, Texas, is renowned for its high-quality specialty metal products and exceptional customer service, primarily serving the construction and retail petroleum industries.

Company Overview

Lane Supply Inc. operates with approximately 74 employees and reported an annual revenue of $23 million. The company specializes in designing and constructing canopies that meet both aesthetic and structural standards. Their products include metal roof systems and structural steel canopies, which are manufactured entirely in their facilities, ensuring quality control from start to finish. Lane Supply has completed projects across all 50 states and internationally, emphasizing their extensive experience and commitment to customer relationships.

Attack Overview

The ransomware attack has resulted in the compromise of 1.4 TB of critical data, including financial records, human resources data, and details pertaining to partners and vendors. Additionally, the breach has exposed client and customer information, engineering and technological documents, drawings, incident and accident reports, as well as internal and external email correspondence. The attack has also affected various databases, potentially disrupting Lane Supply Inc.'s operations and relationships with stakeholders.

About BianLian Group

BianLian is a sophisticated ransomware group that has evolved from targeting individual users to launching high-profile attacks on businesses and organizations globally. Initially functioning as a banking trojan, BianLian transitioned into advanced ransomware operations, emphasizing extortion-based strategies. The group gained initial access through compromised Remote Desktop Protocol (RDP) credentials, implanting custom backdoors specific to each victim, and employing various tools for discovery, lateral movement, collection, exfiltration, and impact.

Penetration and Impact

BianLian's tactics include exfiltration of sensitive data, leading to significant financial and reputational consequences for compromised organizations. The group's shift towards exfiltration-based extortion and its global reach underscore the evolving threat landscape posed by ransomware groups. Lane Supply Inc.'s vulnerabilities, such as potential weaknesses in their cybersecurity measures, may have been exploited by BianLian to penetrate their systems and execute the attack.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.