Connect with us

Cyber Security

Hive ransomware claims cyberattack on Bell Canada subsidiary

Published

on

The Hive ransomware gang claimed responsibility for an attack that hit the systems of Bell Canada subsidiary Bell Technical Solutions (BTS).

BTS is an independent subsidiary with more than 4,500 employees, specializing in installing Bell services for residential and small business customers across the Ontario and Québec provinces.

While the Canadian telecommunications company didn’t reveal when its network was breached or the attack happened, Hive claims in a new entry added to its data leak blog that it encrypted BTS’ systems almost a month ago, on August 20, 2022.

The company’s website, usually reachable at bellsolutionstech.ca, is currently inaccessible, so BTS has published a cybersecurity alert on Bell’s official website.

“The unauthorized party accessed information that may include the name, address and phone number of residential and small business customers in Ontario and Québec who booked a technician visit,” BTS said.

“Bell Technical Solutions took immediate steps to secure affected systems and we want to assure you that no database containing customer information such as credit and debit card numbers, banking or other financial data was accessed in the incident.”

Bell Technical Solutions leak page
Bell Technical Solutions leak page (BleepingComputer)

BTS is currently investigating the incident with the help of the Royal Canadian Mounted Police’s cybercrime unit and has notified the Office of the Privacy Commissioner of the breach.

The Bell subsidiary warned customers of the possibility of being targeted in phishing attacks following this incident and advised them to monitor their accounts for any suspicious activity.

“We will directly notify any individuals whose private information may have been accessed. Bell Technical Solutions operates independently from Bell on a separate IT system; other Bell customers or other Bell subsidiaries were not impacted,” the company added.

“We are pursuing our investigation and working with third-party cybersecurity experts on the matter, as well as implementing solutions to further enhance the security of our systems.”

Hive is a Ransomware-as-a-Service (RaaS) operation active since June 2021 behind attacks against dozens of organizations, counting only those victims who had their data leaked online after refusing to pay the ransom,

The Federal Bureau of Investigation (FBI) released some indicators of compromise and technical details associated with Hive ransomware attacks in August 2021.

Like many other ransomware gangs that use double extortion, the FBI said that Hive operators would also steal any files they consider valuable before encryption to pressure their victim to pay the ransom under the threat of a data leak.

Bell Technical Solutions didn’t reply to a request for comment when BleepingComputer reached out earlier today.

Source: https://www.bleepingcomputer.com/news/security/hive-ransomware-claims-cyberattack-on-bell-canada-subsidiary/

Advertisement
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Copyright © 2023 Cyber Reports Cyber Security News All Rights Reserved Website by Top Search SEO