The City of Dallas targeted by the ransomware attack that compromised a number of servers in its system, including the Dallas Police Department's website.
The hackers, a collective known as Royal, assert that they encrypted the city's vital data and threatened to leak private information online.
The ransomware gang threatened to divulge information on police informants to the criminal groups they were providing information to.
Cyber specialists think that a phishing email that an employee unknowingly clicked is what started the attack.
Source: https://www.cbsnews.com/texas/news/possible-cyber-attack-hampering-dallas-police-operations/
TPRM report: https://scoringcyber.rankiteo.com/company/dallaspd
"id": "dal17249523",
"linkid": "dallaspd",
"type": "Ransomware",
"date": "05/2023",
"severity": "85",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Public Administration',
'location': 'Dallas, Texas',
'name': 'City of Dallas',
'type': 'Government'}],
'attack_vector': 'Phishing email',
'data_breach': {'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Police informant information']},
'description': 'A ransomware attack targeted the City of Dallas, compromising '
'several servers, including those of the Dallas Police '
'Department. The hackers, known as Royal, claimed to have '
'encrypted vital data and threatened to leak private '
'information online. The attack is believed to have been '
'initiated by a phishing email.',
'impact': {'data_compromised': ['Police informant information'],
'systems_affected': ["Dallas Police Department's website",
'Other city servers']},
'initial_access_broker': {'entry_point': 'Phishing email',
'high_value_targets': ['Police informant '
'information']},
'motivation': 'Financial gain, Data theft',
'post_incident_analysis': {'root_causes': 'Phishing email'},
'ransomware': {'data_encryption': True,
'data_exfiltration': True,
'ransomware_strain': 'Royal'},
'threat_actor': 'Royal',
'title': 'Ransomware Attack on the City of Dallas',
'type': 'Ransomware'}