Evolve Bank and Trust, a financial institution catering to fintech startups, experienced a ransomware attack alongside a data breach with the potential to affect its customers and those of its fintech partners. A cybercriminal organization obtained and released private data on the dark web. LockBit ransomware group claimed responsibility for the theft and publication of sensitive information, disrupting banking operations, compromising client confidentiality, and undermining trust in Evolve's cybersecurity measures.
Source: https://www.wired.com/story/google-face-recognition-office-safety-security-roundup/
TPRM report: https://scoringcyber.rankiteo.com/company/evolve-bank-&-trust
"id": "evo449070624",
"linkid": "evolve-bank-&-trust",
"type": "Ransomware",
"date": "6/2024",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"
{'affected_entities': [{'customers_affected': 'Customers and fintech partners',
'industry': 'Finance',
'name': 'Evolve Bank and Trust',
'type': 'Financial Institution'}],
'data_breach': {'data_exfiltration': 'Yes',
'type_of_data_compromised': 'Sensitive information'},
'description': 'Evolve Bank and Trust experienced a ransomware attack '
'alongside a data breach, affecting its customers and fintech '
'partners. The LockBit ransomware group claimed responsibility '
'for the theft and publication of sensitive information on the '
'dark web, disrupting banking operations and compromising '
'client confidentiality.',
'impact': {'brand_reputation_impact': 'Undermined trust in cybersecurity '
'measures',
'data_compromised': 'Sensitive information',
'operational_impact': 'Disruption of banking operations',
'systems_affected': 'Banking operations'},
'initial_access_broker': {'data_sold_on_dark_web': 'Yes'},
'motivation': 'Financial gain and disruption',
'ransomware': {'data_exfiltration': 'Yes', 'ransomware_strain': 'LockBit'},
'threat_actor': 'LockBit ransomware group',
'title': 'Ransomware Attack and Data Breach at Evolve Bank and Trust',
'type': ['Ransomware', 'Data Breach']}