Cognizant confirms Maze ransomware attack, says customers face disruption




Cognizant, one of many largest tech and consulting corporations within the Fortune 500, has confirmed it was hit by a ransomware assault.

Particulars stay slim in addition to a short assertion on its website, confirming the incident.

“Cognizant can affirm {that a} safety incident involving our inside programs, and inflicting service disruptions for a few of our shoppers, is the results of a Maze ransomware assault,” the assertion learn. “Our inside safety groups, supplemented by main cyber protection companies, are actively taking steps to include this incident.”

The New Jersey-headquartered IT large stated it was participating with the regulation enforcement.

The corporate, which provides a spread of providers together with IT session to shoppers in additional than 80 nations, posted $16.eight billion in income final yr. The decades-old agency additionally maintains a enterprise settlement with Fb to assist the social large average content material on its platform. Cognizant employs about 290,000 folks, most of whom dwell in India.

When reached, Cognizant spokesperson Richard Lacroix declined to remark past the assertion.

Maze shouldn't be like typical data-encrypting ransomware. Maze not solely spreads throughout a community, infecting and encrypting each pc in its path, it additionally exfiltrates the info to the attackers’ servers the place it's held for ransom. If a ransom isn’t paid, the attackers publish the recordsdata on-line. Nonetheless, a web site identified to be related to the Maze attackers, has not but marketed or revealed knowledge related to Cognizant.

The FBI privately warned businesses in December of a rise in Maze-related ransomware incidents.

Because the warning, a number of main corporations have been hit by Maze, together with cyber insurer Chubb, accounting large MNP, a regulation agency and an oil firm.

In line with Bleeping Laptop, which first reported the assault, the Maze hackers denied duty for the assault.

“That doesn't imply Maze was not accountable,” stated Brett Callow, a menace analyst and ransomware skilled at safety agency Emsisoft. “Sooner or later within the final three weeks, Maze additionally hit two Manitoba regulation companies, neither of which has been listed.”

“It’s attainable the group is holding off naming the companies and publishing any knowledge pending the end result of negotiations, and that may very well be the case with Cognizant too,” stated Callow.


Source link

Comments