Ransomware

Deloitte Responds After Ransomware Group Claims Data Theft

Deloitte has issued a response after the Brain Cipher ransomware group claimed to have stolen over 1 TB of information belonging to the company.

Deloitte hacked

Deloitte has issued a statement in response to a ransomware group’s claims regarding the theft of a significant amount of information belonging to the company. 

The ransomware group calling itself Brain Cipher listed Deloitte UK on its Tor-based website last week, claiming to have obtained over one terabyte of data (they claim this is the volume of the data when compressed).

The hackers are threatening to make the stolen files available in five days from now, unless a ransom is paid. 

“We are aware of the claims by the threat actor,” a Deloitte spokesperson told SecurityWeek. “Our investigation indicates that the allegations relate to a single client’s system which sits outside of the Deloitte network. No Deloitte systems have been impacted.”

Brain Cipher has been around since at least April 2024, but it became known in June, after it targeted an Indonesian data center and caused significant disruption to government and other critical services in the country. 

The threat group has targeted dozens of organizations, including in the healthcare, education and manufacturing sectors. They deliver file-encrypting malware that is based on LockBit, and also steal data from victims. Some ties have been found to the ransomware groups named SenSayQ and EstateRansomware.

Advertisement. Scroll to continue reading.

This is the second time Deloitte has had to respond to hacking claims in recent months. In September, the notorious hacker IntelBroker claimed to have stolen sensitive data, but the audit and consulting giant said at the time that impact was limited.

Related: BT Investigating Hack After Ransomware Group Claims Theft of Sensitive Data

Related: Energy Sector Contractor ENGlobal Targeted in Ransomware Attack

Related: Two UK Hospitals Hit by Cyberattacks, One Postponed Procedures

Related Content

Data Breaches

The digital health company said it learned of the breach on June 8 and the attackers demanded a ransom.

Data Breaches

The hack-and-leak group FulcrumSec claims to have stolen 1.3TB of data from the pharmaceutical giant.

Ransomware

Mackay Sugar was targeted in a cyberattack carried out by a threat group known as The Gentlemen.

Cybercrime

Oleksii Oleksiyovych Lytvynenko admitted to working on the development of a loader for the Conti gang.

Data Breaches

The pharmaceutical giant says the attackers gained access to personal data stored on the compromised systems. 

Data Breaches

French officials say roughly 73,000 government accounts were affected, while the threat actor claims to have stolen messages and user data from the sovereign...

Data Breaches

The extortion group threatens to leak 297 GB of data allegedly stolen from the Council of Europe, including employee personal information.

Data Breaches

Someone posted fake VRChat and Discord data breach reports on the system, prompting the Maine AG to take action.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version