The AlphV (BlackCat) ransomware group put Academy Mortgage in the same unfavorable position of having its private documents posted on the dark web.
The threat actors listed Academy Mortgage on their leak site and even alluded to the company's past difficulties.
The business refused to accept payment and offered a number of screen-captured files as evidence of system access.
Driver's license photos can be found in some of the folders, while internal remarks or documents can also be found there.
The post makes no mention of whether BlackCat actually locked any files or only exfiltrated copies of them.
TPRM report: https://scoringcyber.rankiteo.com/company/academy-mortgage-corporation
"id": "aca19362723",
"linkid": "academy-mortgage-corporation",
"type": "Ransomware",
"date": "05/2023",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"
{'affected_entities': [{'industry': 'Mortgage',
'name': 'Academy Mortgage',
'type': 'Business'}],
'attack_vector': 'Ransomware',
'data_breach': {'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Yes',
'type_of_data_compromised': ["Driver's license photos",
'Internal remarks or documents']},
'description': 'The AlphV (BlackCat) ransomware group posted private '
'documents of Academy Mortgage on the dark web. The threat '
'actors listed Academy Mortgage on their leak site and alluded '
"to the company's past difficulties. The business refused to "
'accept payment and offered a number of screen-captured files '
'as evidence of system access. Some of the folders contain '
"driver's license photos, while others contain internal "
'remarks or documents. The post does not mention whether '
'BlackCat actually locked any files or only exfiltrated copies '
'of them.',
'impact': {'data_compromised': ["Driver's license photos",
'Internal remarks or documents']},
'motivation': 'Financial Gain',
'ransomware': {'data_exfiltration': 'Yes',
'ransom_paid': 'No',
'ransomware_strain': 'AlphV (BlackCat)'},
'threat_actor': 'AlphV (BlackCat)',
'title': 'AlphV (BlackCat) Ransomware Attack on Academy Mortgage',
'type': 'Ransomware'}