Ransomware Strikes DINAS Corp Disrupting Distribution Network

Incident Date:

September 29, 2024

World map

Overview

Title

Ransomware Strikes DINAS Corp Disrupting Distribution Network

Victim

DINAS Corp

Attacker

Inc Ransom

Location

Jamaica, USA

New York, USA

First Reported

September 29, 2024

Ransomware Attack on DINAS Corp by INC Ransom: A Detailed Analysis

DINAS Corp, a prominent wholesale distributor based in Jamaica, New York, has recently fallen victim to a ransomware attack orchestrated by the notorious cybercriminal group, INC Ransom. Specializing in Latin American ethnic products, DINAS Corp is known for its extensive distribution network across the northeastern United States, catering to both retail and food service sectors. The company employs approximately 22 to 23 individuals and reported an annual revenue of $33.2 million, highlighting its significant market presence.

DINAS Corp's commitment to quality and customer satisfaction, along with its active role in corporate social responsibility initiatives, distinguishes it in the retail sector. However, its import activities and extensive distribution network may have inadvertently exposed vulnerabilities, making it an attractive target for cybercriminals like INC Ransom.

Attack Overview

INC Ransom has claimed responsibility for infiltrating DINAS Corp's systems, exfiltrating sensitive business and customer data. This attack underscores the group's use of double extortion tactics, where they not only encrypt data but also threaten to release it publicly to pressure victims into paying the ransom. The breach potentially compromises critical information, posing significant risks to DINAS Corp's operations and reputation.

About INC Ransom

INC Ransom is a sophisticated ransomware group known for targeting various industries, including healthcare, education, and technology. The group employs advanced techniques such as spear-phishing and exploiting vulnerabilities like CVE-2023-3519 in Citrix NetScaler. Their ability to use both Commercial Off-The-Shelf software and legitimate system tools for reconnaissance and lateral movement within networks sets them apart in the cybercriminal landscape.

Potential Vulnerabilities

DINAS Corp's extensive import activities and reliance on digital systems for distribution and customer management may have presented entry points for INC Ransom. The group's expertise in exploiting system vulnerabilities and conducting spear-phishing campaigns could have facilitated their penetration into DINAS Corp's network, leading to the successful exfiltration of data.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.