May 9, 2022

, South Africa

Capetown, South Africa

May 9, 2022

Safarni, a Flight Booking Engine, Targeted by Lockbit2 Ransomware Group

Company Size and Industry Standing

Safarni operates within the Education sector, a prime target for ransomware attacks due to the sensitive data involved. Although specific details regarding the company's size and industry standing are not disclosed on its website, Safarni is recognized for its global flight booking engine that aggregates flights from various sources to offer the best prices to its customers.

Vulnerabilities and Targeting

The ransomware attack on Safarni underscores the vulnerabilities present in companies within the Education sector. Ransomware groups frequently target entities holding sensitive data, leveraging the potential for high ransom demands in return for not disseminating the data or disrupting operations. The breach at Safarni likely involved exploiting system vulnerabilities or employing social engineering tactics to infiltrate their network.

Previous Attacks and Mitigation

Prior incidents involving Safari, the browser utilized by Safarni, have seen scareware campaigns that falsely accuse users of accessing illegal content to extort money. These instances, while not true ransomware attacks, employ intimidation tactics to provoke payment from users before they can assess the actual threat. To counter such threats, it is imperative for companies to update their systems regularly and educate their workforce on the dangers of engaging with suspicious links or downloading unverified software.

The Lockbit2 attack on Safarni accentuates the critical need for cybersecurity measures within the Education sector, especially for entities managing sensitive data. Staying abreast of emerging threats and adopting comprehensive security protocols can significantly enhance an organization's defense against ransomware and other cyber threats.


