MasMovil, a major Spanish telecom business, has been victimised by the Revil ransomware group, which claims to have "downloaded databases and other crucial data" from the victimised organisation.
The organisation has also posted screenshots that appear to be of the stolen MasMovil data, showing folders with names like Backup, RESELLERS, PARLEM, and OCU, among others.
MasMovil had recognised the ransomware attack, but the Revil gang had not made a demand for ransom.
Source: https://www.hackread.com/revil-ransomware-gang-hits-masmovil-telecom/
TPRM report: https://scoringcyber.rankiteo.com/company/masmovil
"id": "msm3506223",
"linkid": "masmovil",
"type": "Ransomware",
"date": "07/2021",
"severity": "75",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'industry': 'Telecommunications',
'location': 'Spain',
'name': 'MasMovil',
'type': 'Telecom'}],
'data_breach': {'data_exfiltration': True,
'type_of_data_compromised': ['databases', 'crucial data']},
'description': 'MasMovil, a major Spanish telecom business, has been '
'victimised by the Revil ransomware group, which claims to '
"have 'downloaded databases and other crucial data' from the "
'victimised organisation. The organisation has also posted '
'screenshots that appear to be of the stolen MasMovil data, '
'showing folders with names like Backup, RESELLERS, PARLEM, '
'and OCU, among others. MasMovil had recognised the ransomware '
'attack, but the Revil gang had not made a demand for ransom.',
'impact': {'data_compromised': ['databases', 'crucial data']},
'motivation': 'Data exfiltration and potential ransom',
'ransomware': {'data_exfiltration': True, 'ransomware_strain': 'Revil'},
'threat_actor': 'Revil ransomware group',
'title': 'MasMovil Ransomware Attack',
'type': 'Ransomware'}