Australian transportation and logistics company Toll Group's systems across multiple sites and business units were encrypted and affected by a ransomware called the Mailto ransomware.
Between 1 and 16 NetWalker ransom notes and/or sample encrypted files have been submitted per day for analysis for 30 days.
Service was disrupted and systems were shut down.
Source: https://www.bleepingcomputer.com/news/security/new-ransomware-strain-halts-toll-group-deliveries/
TPRM report: https://scoringcyber.rankiteo.com/company/tollgroup
"id": "tol1346161222",
"linkid": "tollgroup",
"type": "Ransomware",
"date": "02/2020",
"severity": "85",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'industry': 'Transportation and Logistics',
'location': 'Australia',
'name': 'Toll Group',
'type': 'Company'}],
'data_breach': {'data_encryption': 'Yes'},
'description': "Australian transportation and logistics company Toll Group's "
'systems across multiple sites and business units were '
'encrypted and affected by a ransomware called the Mailto '
'ransomware. Between 1 and 16 NetWalker ransom notes and/or '
'sample encrypted files have been submitted per day for '
'analysis for 30 days. Service was disrupted and systems were '
'shut down.',
'impact': {'downtime': 'Service disrupted and systems shut down',
'operational_impact': 'Service disruption',
'systems_affected': 'Multiple sites and business units'},
'motivation': 'Financial Gain',
'ransomware': {'data_encryption': 'Yes', 'ransomware_strain': 'Mailto'},
'title': 'Toll Group Ransomware Attack',
'type': 'Ransomware Attack'}