Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

ItsjustMe

(11,252 posts)
Thu May 13, 2021, 07:31 PM May 2021

Colonial Pipeline paid $5 million ransom to hackers

https://www.cnbc.com/2021/05/13/colonial-pipeline-paid-ransom-to-hackers-source-says.html

Colonial Pipeline paid a ransom to hackers after the company fell victim to a sweeping cyberattack, one source familiar with the situation confirmed to CNBC.

A U.S. official, who spoke on the condition of anonymity, confirmed to NBC News that Colonial paid nearly $5 million as a ransom to the cybercriminals.

It was not immediately clear when the transaction took place. Colonial Pipeline did not immediately respond to CNBC’s request for comment. The ransom payment was first reported by Bloomberg.

Earlier on Thursday, President Joe Biden declined to comment when asked if Colonial Pipeline paid the ransom. White House press secretary Jen Pskai told reporters during a briefing that it remains the position of the federal government to not pay ransoms as it may incentivize cybercriminals to launch more attacks.

Last week’s assault, carried out by a criminal cybergroup known as DarkSide, forced the company to shut down approximately 5,500 miles of pipeline, leading to a disruption of nearly half of the East Coast fuel supply and causing gasoline shortages in the Southeast.
7 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies

Probatim

(2,543 posts)
5. I'm certain Dark Side completely wiped all traces of the ransomware from the network.
Fri May 14, 2021, 10:55 AM
May 2021

I'm sure they can be trusted to do that. Correct?

SharonAnn

(13,779 posts)
7. Darkside ransomware gang says it lost control of its servers & money a day after Biden threat
Fri May 14, 2021, 04:01 PM
May 2021

Darkside ransomware gang says it lost control of its servers & money a day after Biden threat
Source: The Record

A day after US President Joe Biden said the US plans to disrupt the hackers behind the Colonial Pipeline cyberattack, the operator of the Darkside ransomware said the group lost control of its web servers and some of the funds it made from ransom payments.

“A few hours ago, we lost access to the public part of our infrastructure, namely: Blog. Payment server. CDN servers,” said Darksupp, the operator of the Darkside ransomware, in a post spotted by Recorded Future threat intelligence analyst Dmitry Smilyanets. “Now these servers are unavailable via SSH, and the hosting panels are blocked,” said the Darkside operator while also complaining that the web hosting provider refused to cooperate.

In addition, the Darkside operator also reported that cryptocurrency funds were also withdrawn from the gang’s payment server, which was hosting ransom payments made by victims. The funds, which the Darkside gang was supposed to split between itself and its affiliates (the threat actors who breach networks and deploy the ransomware), were transferred to an unknown wallet, Darksupp said.

This sudden development comes after US authorities announced their intention to go after the gang.

Read more: https://therecord.media/darkside-ransomware-gang-says-it-lost-control-of-its-servers-money-a-day-after-biden-threat/

Latest Discussions»Issue Forums»Editorials & Other Articles»Colonial Pipeline paid $5...