Unknown attacks Enzo Biochem

Incident Date:

April 6, 2023

World map

Overview

Title

Unknown attacks Enzo Biochem

Victim

Enzo Biochem

Attacker

Unknown

Location

New York, USA

New York, USA

First Reported

April 6, 2023

Enzo Biochem Targeted in Ransomware Attack

An unknown threat group has attacked Enzo Biochem. Enzo Biochem is a biotechnology company based in New York, USA, and is a pioneer in molecular diagnostics. The company has reportedly suffered a ransomware attack and subsequent data breach compromising the sensitive personal information of almost 2.5 million people.

Details of the Attack

According to an 8-K filing with the US Securities and Exchange Commission (SEC), attackers targeted Enzo Biochem’s internal network with a ransomware attack on April 6th. “The Company promptly deployed containment measures, including disconnecting its systems from the internet, launched an investigation with assistance from third-party cybersecurity experts, and notified law enforcement. The company adhered to its disaster recovery plan, which enabled it to maintain operations throughout the incident response process,” the filing reads.

Extent of the Data Breach

Enzo Biochem revealed on April 11th that its internal investigation found that cybercriminals accessed and exfiltrated data such as names, test information, and social security numbers from the company’s database. While the investigation is still ongoing, Enzo Biochem identified unauthorized access to or acquisition of the clinical test information of approximately 2,470,000 individuals. “The Social Security numbers of approximately 600,000 of these individuals may also have been involved,” the company said.

Impact and Response

“The Company has incurred, and may continue to incur, certain expenses related to this attack, including expenses to respond to, remediate, and investigate this matter. Further, the company remains subject to risks and uncertainties as a result of the incident, including as a result of the data that was accessed or exfiltrated from the company’s network, as noted above. Additionally, security and privacy incidents have led to, and may continue to lead to, additional regulatory scrutiny. The company is in the process of evaluating the full scope of the costs and related impacts of this incident,” Enzo Biochem added.

Recent Ransomware Attacks

The Recent Ransomware Attacks (RRA) site acts as a watchtower, providing you with near real-time ransomware tracking of attacks, groups and their victims. Given threat actors’ overarching, lucrative success so far, ransomware attacks have become the most ubiquitous, and financially and informationally impactful cyber threat to businesses and organizations today.

The site’s data is generated based on hosting choices of real-world threat actors, and a handful of other trackers. While sanitization efforts have been taken, we cannot guarantee 100% accuracy of the data. Attack updates will be made as source data is reported by reputable sources. By viewing, accessing, or using RRA you acknowledge you are doing so at your own risk.