Targus International LLC Targeted by RedRansomware Group: Cyberattack on Mobile Computing Accessories Company

Incident Date:

April 19, 2024

World map

Overview

Title

Targus International LLC Targeted by RedRansomware Group: Cyberattack on Mobile Computing Accessories Company

Victim

Targus International LLC

Attacker

RedRansomware

Location

Anaheim, USA

California, USA

First Reported

April 19, 2024

Targus International LLC Targeted by RedRansomware Group

Company Profile

Targus International LLC, a privately owned multinational corporation, specializes in mobile computing accessories. Founded in 1983 and headquartered in Anaheim, California, Targus designs, manufactures, and sells a range of products including laptop and tablet cases, computer accessories, and universal docking stations.

Details of the Ransomware Attack

The cybercriminal group RedRansomware, also known as Red CryptoApp, has recently claimed responsibility for a ransomware attack on Targus International LLC. This group, which emerged in March 2024, has been active in targeting various sectors across multiple countries. The attack was disclosed via their dark web leak site, known as the "Wall of Shame".

RedRansomware typically infiltrates systems through phishing emails or exploiting software vulnerabilities, leading to the encryption of all user files with the ".REDCryptoApp" extension. The group then directs victims to a unique URL on the Tor network to negotiate ransom payments through an automated AI-driven chat interface.

Industry Standing and Vulnerabilities

Targus's prominence in the mobile computing accessories market makes it a notable target for cyberattacks. The company's extensive global presence and significant revenue streams increase its attractiveness to threat actors looking for high-impact targets. Discrepancies in reported revenue figures might also indicate complexities in their financial reporting or IT systems, potentially making them more susceptible to cyber threats.

Sources

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.