The attack, which now includes extortion components, has moved into its second week.

Dark Reading Staff, Dark Reading

October 13, 2020

1 Min Read

Software AG, Germany's second-largest software company (after SAP) continues to struggle with a ransomware attack that has evolved into an extortion bid carrying a $20 million payoff demand.

The attack began on October 3 as a ransomware attack in which the attackers demanded the unusually high ransom in return for a decryption key. According to reporting from ZDNet, stolen confidential employee information began to be released on the Dark Web on October 9 after negotiations between the company and attackers failed. As of today, Computer Weekly reports that online customer support and internal communications systems remain offline, though customer services are operational.

Criminals attacked using Clop ransomware, first described in the wild in February 2019. Clop is a sophisticated, heavily obfuscated, and still-evolving ransomware strain that shows signs of being specifically designed to target enterprise, rather than individual, victims.

For more, read here and here.

About the Author(s)

Dark Reading Staff

Dark Reading

Dark Reading is a leading cybersecurity media site.

Keep up with the latest cybersecurity threats, newly discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.

You May Also Like


More Insights