Ransomware Attack on Gibbs Hurley Chartered Accountants by Hunters International: Details and Impact

Incident Date:

July 15, 2024

World map

Overview

Title

Ransomware Attack on Gibbs Hurley Chartered Accountants by Hunters International: Details and Impact

Victim

Gibbs Hurley Chartered Accountants

Attacker

Hunters International

Location

Paddington, Australia

, Australia

First Reported

July 15, 2024

Ransomware Attack on Gibbs Hurley Chartered Accountants

Overview of Gibbs Hurley Chartered Accountants

Gibbs Hurley Chartered Accountants, based in Paddington, Brisbane, is a professional accounting firm specializing in financial and advisory services for small and medium-sized enterprises (SMEs) and high-net-worth individuals. Established in 2010 by Andrew Gibbs, the firm offers services such as financial advice, tax accounting, self-managed superannuation funds (SMSF) setup, virtual CFO services, cloud accounting, and business advisory. The firm is known for its client-centric approach, focusing on delivering clear and confident advice to help clients thrive financially.

Company Size and Industry Position

Gibbs Hurley employs 25 staff members and generates an annual revenue of $5.1 million. The firm stands out in the industry due to its comprehensive service offerings and commitment to client satisfaction. Their expertise in tax minimization, compliance with the Australian Taxation Office (ATO), and strategic business planning makes them a trusted partner for their clients.

Details of the Ransomware Attack

The ransomware group Hunters International has claimed responsibility for a recent attack on Gibbs Hurley Chartered Accountants. The group has disclosed sensitive information about the firm, including its annual revenue and workforce size. While Gibbs Hurley has not confirmed the breach, the disclosure by Hunters International suggests a significant data exfiltration. No specific date or countdown timer for the potential release of the firm's data has been announced.

About Hunters International

Hunters International is a Ransomware-as-a-Service (RaaS) group that emerged in Q3 of 2023, following the disruption of the Hive ransomware group. The group exhibits significant technical overlap with Hive, indicating a shared lineage. Hunters International focuses on exfiltrating data and extorting victims for ransom. The group has targeted various regions, including the US, UK, Germany, and Namibia, without a specific industry focus.

Potential Vulnerabilities and Penetration Methods

The exact method of penetration used by Hunters International to breach Gibbs Hurley's systems remains unclear. However, common tactics include phishing attacks, exploiting unpatched software vulnerabilities, and leveraging weak security protocols. The attack on Gibbs Hurley underscores the persistent threat of ransomware attacks targeting accounting firms, emphasizing the need for robust cybersecurity measures in the industry.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.