lockbit2 attacks Eredi Riva Geom. Mario S.R.L.
Incident Date:
May 2, 2022
Overview
Title
lockbit2 attacks Eredi Riva Geom. Mario S.R.L.
Victim
Eredi Riva Geom. Mario S.R.L.
Attacker
Lockbit2
Location
First Reported
May 2, 2022
Eredi Riva Geom. Mario S.R.L. Targeted by Lockbit2 Ransomware Group
Company Profile
Eredi Riva Geom. Mario S.R.L. is a single-owner company, with the sole proprietor being Eredi di Riva Natale s.r.l. The company's website provides limited information about its operations, products, and services. However, it is clear that they operate in the manufacturing sector and offer products related to Tranciati - Legnami.
Vulnerabilities and Targeting
Ransomware attacks, such as the one experienced by Eredi Riva Geom. Mario S.R.L., can target companies of all sizes and industries. In this case, the Lockbit2 group has chosen to target a company in the manufacturing sector. The specific vulnerabilities that led to this attack are not publicly disclosed, but it is known that ransomware groups often exploit weaknesses in outdated software, unpatched systems, or weak passwords to gain access to a target's network.
Mitigation Strategies
To mitigate the risks of ransomware attacks, companies should prioritize regular software updates, strong password policies, and employee training on cybersecurity best practices. Additionally, maintaining backups of critical data and regularly testing disaster recovery plans can help minimize the impact of a successful attack.
The Lockbit2 ransomware group's attack on Eredi Riva Geom. Mario S.R.L. highlights the ongoing threat of cybercrime to businesses of all sizes and industries. As the manufacturing sector continues to digitize its operations, it is crucial for companies to prioritize cybersecurity measures to protect their assets and maintain business continuity.
Sources
- Eredi Riva Geom. Mario S.R.L. Website: https://erediriva.it
- Ukrainian Arrested and Charged with Ransomware Attack on Kaseya: https://www.justice.gov/opa/pr/ukrainian-arrested-and-charged-ransomware-attack-kaseya
Recent Ransomware Attacks
The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.
The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.