Virtual Event Today: Cloud & Data Security Summit - Join Event In-Progress
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Ransomware

Ohio Lottery Hit by Ransomware, Hackers Claim Theft of Employee and Player Data

The DragonForce ransomware group has taken credit for the Ohio Lottery hack, claiming to have stolen millions of data records.

The Ohio Lottery has confirmed being targeted in a cyberattack and a ransomware group claims to have stolen a significant amount of information from the organization’s systems.

The Ohio state lottery informed customers on its website that it has experienced a “cybersecurity event”. The organization assured the public that its gaming system is fully operational, but said it decided to shut down some key systems to contain the incident. 

Tickets can still be purchased, but winning numbers and jackpots for some games are not available on the Ohio Lottery website and mobile app. In addition, the mobile cashing app and Super Retailer locations are not cashing prizes greater than $599 as a result of the incident. 

A seemingly new ransomware group named DragonForce took credit for the attack on December 27. 

The hackers claim to have stolen more than 600 Gb of data from the Ohio Lottery, including databases storing over three million records associated with employees and players. The data allegedly includes names, email and postal addresses, winnings, dates of birth, and social security numbers. 

The cybercriminals published several screenshots to demonstrate their claims. They are threatening to make all the stolen data public in three days, suggesting that the Ohio Lottery is not willing to pay the demanded ransom. 

DragonForce’s leak website currently lists 21 victims. The group has become one of the most active ransomware gangs. 

Advertisement. Scroll to continue reading.

Related: Ransomware Group Claims 100 Gb of Data Stolen From Nissan

Related: BlackCat Strikes Back: Ransomware Gang “Unseizes” Website, Vows No Limits on Targets

Related: Inmate, Staff Information Stolen in Rhode Island Prison Data Breach

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar as we break down why email-layer defenses alone can't keep pace with the modern phishing ecosystem, how agentic AI is changing the capacity equation for security teams, and more.

Register

This year's summit will help organizations learn how to utilize tools, controls, and design models needed to properly secure cloud environments. Interact with leading solution providers and other end users facing similar challenges in securing a variety of cloud deployments.

Register

People on the Move

Jazz has named Sean Robinson, Rickie Goyal, Danielle Guetta, Shani Nago, and Lior Magram as VPs and Michael Calev as COO.

AJ Shipley has been appointed Chief Product Officer at CrowdStrike.

Brinqa has named Ron Dovich as Chief AI and Automation Officer, David Allen as CTO, Steve Biagioni as CFO, and James Walta as VP of Product.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.