Ransomware Attack on Segura Procuradores by Madliberator Compromises Sensitive Data

Incident Date:

July 17, 2024

World map

Overview

Title

Ransomware Attack on Segura Procuradores by Madliberator Compromises Sensitive Data

Victim

Segura Procuradores

Attacker

Mad Liberator

Location

Madrid, Spain

, Spain

First Reported

July 17, 2024

Ransomware Attack on Segura Procuradores by Madliberator

Overview of Segura Procuradores

Segura Procuradores SLP is a professional law firm specializing in legal representation, primarily operating in Spain with offices in major cities such as Barcelona and Madrid. The firm is dedicated to the practice of "procura," which involves acting as legal representatives for clients in judicial matters. Their central office in Barcelona is strategically located within a judicial complex, allowing them to provide timely responses to clients and attorneys.

The firm serves a diverse clientele that includes significant banks, financial institutions, public agencies, and various businesses, alongside individual clients and small enterprises. Segura Procuradores is structured into four main departments: Legal Representation, Notification Management, Technology and IT Management, and Client Services and Billing.

Details of the Ransomware Attack

Segura Procuradores has fallen victim to a ransomware attack orchestrated by the cybercriminal group known as Madliberator. The attack has compromised a wide array of sensitive information, including personal and sensitive data, electronic citizen access keys, financial data, court documents, and banking information. The breach poses significant risks to both the organization and its clients, potentially leading to severe financial and legal repercussions.

About Madliberator

Madliberator is a notorious ransomware group recognized for its targeted attacks on various organizations worldwide. The group has recently gained significant attention for its high-profile operations, including an attack on the Italian Ministry of Culture. Madliberator employs sophisticated encryption methods, specifically AES/RSA, to lock victim files. They use legal threats and intimidation tactics to coerce victims into complying with their demands.

Potential Vulnerabilities

Segura Procuradores' reliance on technology for managing legal documents and client interactions may have made them vulnerable to this attack. The firm's extensive use of electronic systems for filing legal documents and managing notifications could have been a potential entry point for the ransomware. Additionally, the sensitive nature of the data handled by the firm makes it an attractive target for cybercriminals.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.