Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Breaches

Microlise Confirms Data Breach as Ransomware Group Steps Forward

The SafePay ransomware group claims to have stolen over 1 terabyte of data from vehicle tracking solutions provider Microlise.

UK-based vehicle tracking solutions provider Microlise confirmed last week that data was stolen from its systems during an October cyberattack.

Disclosed on October 31, the incident resulted in a large portion of Microlise’s network being disrupted, which impacted tracking systems and panic alarms in the prison vans and courier vehicles of at least two operators, namely DHL and Serco.

One week later, the company said it was already bringing some of the affected services online, but noted that some employee data was likely compromised during the attack.

Last week, Microlise notified the London Stock Exchange that the restoration process was essentially completed, confirming the theft of data from its systems.

“The company can now confirm that the vast majority of customer systems are back online, with some remaining customers conducting their own security verifications before enabling users. The company would like to reiterate that no customer systems data was compromised,” Microlise said.

The company said it has notified international authorities that corporate data was stolen from its headquarters, without providing further details on the matter.

Advertisement. Scroll to continue reading.

SecurityWeek has emailed Microlise for additional information on the cyberattack and will update this article as soon as a reply arrives.  

Two days after Microlise’s updated notice to the London Stock Exchange, the SafePay ransomware group listed the company on its Tor-based leak site, claiming the theft of 1.2 terabytes of data.

A relatively obscure gang, SafePay uses LockBit-based ransomware in attacks and engages in double-extortion tactics, threatening to release data allegedly stolen from its victims.

To date, the group has claimed responsibility for over 20 intrusions and has made the data of some of its alleged victims available publicly.

Related: Mexico’s President Says Government Is Investigating Reported Ransomware Hack of Legal Affairs Office

Related: Akira Ransomware Drops 30 Victims on Leak Site in One Day

Related: Russian Hackers Target Russian Companies With Ransomware

Related: Online Learning Company K12 Paying Ransom Following Ransomware Attack

Related: Microchip Technology Reports $21.4 Million Cost From Ransomware Attack

Written By

Ionut Arghire is an international correspondent for SecurityWeek.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Today’s attackers are no longer breaking in — they’re logging in. Join this live webinar as we break down the modern identity attack chain and examine how recent breaches exploited weaknesses in authentication, identity verification, and access management processes.

Register

AI has accelerated both sides of the fight. Adversaries are weaponizing vulnerabilities faster, while defenders are racing to ship detections and configurations. Join this live webinar as we explore how to prove your controls actually hold against new threats, map your security maturity, and unite breach simulation with automated pentesting into a single, coordinated program.

Register

People on the Move

SolarWinds has appointed Justin Henkel as Chief Information Security Officer.

J. Paul Haynes has joined Cinchy as Chief Executive Officer.

Hatem Naguib has become Chief Executive Officer at Sysdig.

More People On The Move

Expert Insights

Four decades of incident response experience suggest that exploits are often the symptom, not the root cause, of today’s cybersecurity failures.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.