Elbit Systems of America suffered a data breach incident after it was targeted in a ransomware attack by the Black Basta ransomware gang.
The Elbit Systems of America noticed unusual activity on its network and it immediately shut down its network and took steps to secure the environment.
The attacker acquired information belonging to certain employees, including name, address, social security number, date of birth, direct deposit information, and ethnicity.
Elbit Systems notified the impacted individuals and offered 12 months of free identity protection and credit monitoring services.
The Black Basta website also displayed a few documents allegedly stolen from the defence contractor, including a payroll report, an audit report, a confidentiality agreement, and a non-disclosure agreement.
TPRM report: https://scoringcyber.rankiteo.com/company/elbitsystemsofamerica
"id": "elb233161222",
"linkid": "elbitsystemsofamerica",
"type": "Breach",
"date": "09/2022",
"severity": "100",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Defense',
'name': 'Elbit Systems of America',
'type': 'Defense Contractor'}],
'attack_vector': 'Ransomware',
'data_breach': {'data_exfiltration': 'Yes',
'file_types_exposed': ['payroll report',
'audit report',
'confidentiality agreement',
'non-disclosure agreement'],
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['name',
'address',
'social security number',
'date of birth',
'direct deposit information',
'ethnicity']},
'description': 'Elbit Systems of America suffered a data breach incident '
'after it was targeted in a ransomware attack by the Black '
'Basta ransomware gang.',
'impact': {'data_compromised': ['name',
'address',
'social security number',
'date of birth',
'direct deposit information',
'ethnicity']},
'motivation': 'Data Theft and Ransom',
'ransomware': {'data_exfiltration': 'Yes', 'ransomware_strain': 'Black Basta'},
'response': {'communication_strategy': 'Notified the impacted individuals and '
'offered 12 months of free identity '
'protection and credit monitoring '
'services',
'containment_measures': 'Shut down its network and took steps to '
'secure the environment'},
'threat_actor': 'Black Basta ransomware gang',
'title': 'Elbit Systems of America Data Breach',
'type': 'Ransomware Attack'}