Uncategorized

Ingram Micro Scrambling to Restore Systems After Ransomware Attack

The IT products and services giant did not say how the intrusion occurred or whether any data was stolen from its systems.

Ingram Micro Cyberattack

IT distributor giant Ingram Micro has confirmed over the weekend that a ransomware attack was responsible for a widespread outage over its services.

One of the largest distributors of IT products and services, Ingram Micro was forced to take certain systems offline on Friday afternoon, in response to the incident.

This caused widespread outages across the company’s services, preventing customers from accessing management portals or placing orders, according to multiple Reddit posts.

On Saturday, the tech giant confirmed that the outage was caused by ransomware, saying it was scrambling to restore the affected systems and services.

“Ingram Micro recently identified ransomware on certain of its internal systems. Promptly after learning of the issue, the company took steps to secure the relevant environment, including proactively taking certain systems offline and implementing other mitigation measures,” the company said.

“Ingram Micro is working diligently to restore the affected systems so that it can process and ship orders, and the company apologizes for any disruption this issue is causing its customers, vendor partners, and others,” the giant continued.

Advertisement. Scroll to continue reading.

Ingram Micro did not say how the intrusion occurred or whether any data was stolen from its systems. SecurityWeek has emailed the company for additional information and will update this article if a reply arrives.

While the company did not name the attackers, the SafePay ransomware group reportedly claimed the incident and the theft of data from Ingram Micro’s systems.

SafePay has been one of the most active ransomware gangs this year, claiming over 220 victims since starting operations in November 2024.

Related: Chain IQ, UBS Data Stolen in Ransomware Attack

Related: Krispy Kreme Confirms Data Breach After Ransomware Attack

Related: Anubis Ransomware Packs a Wiper to Permanently Delete Files

Related: Fog Ransomware Attack Employs Unusual Tools

Related Content

Cybercrime

Oleksii Oleksiyovych Lytvynenko has been sentenced to 4 years in prison after he was arrested in Ireland in 2023.

Data Breaches

The company has notified the SEC that hackers accessed patient, employee, provider, business, and financial information.

Incident Response

The company has called in CrowdStrike and others to investigate the attack that caused global network disruption.

Data Breaches

FulcrumSec says it stole over 80 GB of data from Manchester Airports Group and plans to leak it online.

Data Breaches

The Rhysida ransomware group has claimed the exfiltration of over 5TB of data, including personal information and credentials.

Ransomware

The Bureau of Alcohol, Tobacco, Firearms and Explosives has described it as a ‘major incident’ and it’s conducting an investigation with the DOJ.

Cybercrime

The cybersecurity incident has disrupted Boston Scientific’s ability to process and ship customer orders.

ICS/OT

The attack caused real-world operational disruption and raised concerns about the resilience of Britain’s distributed energy infrastructure and the potential for repeatable attacks.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version