The Ontario Progressive Conservative Party’s internal database was hacked.
The database comprised names, phone numbers and other personal information of over a million eligible voters in the province, the party supporters, donors and campaign volunteers.
The Constituent Information Management System (CIMS)was breached before Christmas using a ransomware virus.
The attack was not the first on the system.
The attack used to access and encrypt four servers.
The affected servers immediately quarantined and restored pre-attack server backups within the same day.
Their logs indicated that no data was stolen from the Party.
Source: https://www.cp24.com/news/ontario-progressive-conservative-party-database-hacked-sources-1.3779326
TPRM report: https://scoringcyber.rankiteo.com/company/ontario-pc-party
"id": "ont23617522",
"linkid": "ontario-pc-party",
"type": "Breach",
"date": "01/2018",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Politics',
'location': 'Ontario, Canada',
'name': 'Ontario Progressive Conservative Party',
'type': 'Political Party'}],
'attack_vector': 'Ransomware virus',
'data_breach': {'number_of_records_exposed': 'Over a million',
'personally_identifiable_information': True,
'type_of_data_compromised': ['Names',
'Phone numbers',
'Other personal information']},
'description': 'The Ontario Progressive Conservative Party’s internal '
'database was hacked. The database comprised names, phone '
'numbers and other personal information of over a million '
'eligible voters in the province, the party supporters, donors '
'and campaign volunteers. The Constituent Information '
'Management System (CIMS) was breached before Christmas using '
'a ransomware virus. The attack was not the first on the '
'system. The attack used to access and encrypt four servers. '
'The affected servers immediately quarantined and restored '
'pre-attack server backups within the same day. Their logs '
'indicated that no data was stolen from the Party.',
'impact': {'data_compromised': ['Names',
'Phone numbers',
'Other personal information'],
'systems_affected': ['Constituent Information Management System '
'(CIMS)',
'Four servers']},
'ransomware': {'data_encryption': True},
'response': {'containment_measures': 'Quarantined affected servers',
'remediation_measures': 'Restored pre-attack server backups'},
'title': 'Ontario Progressive Conservative Party Database Hack',
'type': 'Ransomware'}