Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Ransomware

Oregon Agency Won’t Say If Hackers Stole Data in Cyberattack

Oregon’s environmental agency won’t say if a group of hackers stole data in a cyberattack that was first announced earlier this month.

Oregon’s environmental agency won’t say if a group of hackers stole data in a cyberattack that was first announced earlier this month.

The Oregon Department of Environmental Quality on Friday declined to confirm or deny reports that ransomware group Rhysida was behind the cyberattack and stole department data, including sensitive employee information, The Oregonian/OregonLive reported.

The department said in a news release Friday that the claims referenced in recent media coverage were part of its investigation.

Department spokesperson Lauren Wirtis declined to comment on whether Rhysida had contacted the department or asked for a ransom, The Oregonian/OregonLive reported.

The department said it had not “engaged” in ransom discussions “with any entity claiming to have information stolen from DEQ for sale.” It added that it would provide more details when it has verified information.

The department, which regulates air, water and land quality, first announced the cyberattack roughly two weeks ago. Services, including vehicle smog inspections and agency emails, were interrupted.

Advertisement. Scroll to continue reading.

Most servers are back online and hundreds of staff are now working on laptops, Wirtis said in an email Friday. The department had said last week that most employees didn’t have laptops and were working from their phones.

Potentially impacted servers and all employee computers have to be rebuilt in order to ensure no infected files remain, the department said.

Multiple cyberattacks have been attributed to Rhysida in recent years, including ones last year targeting the operator of Seattle-Tacoma International Airport and Ohio’s capital city of Columbus.

Related: Oregon Zoo Ticketing Service Hack Impacts 118,000

Related: Kidney Dialysis Services Provider DaVita Hit by Ransomware

Related: Two Healthcare Orgs Hit by Ransomware Confirm Data Breaches Impacting Over 100,000

Related: Ahold Delhaize Confirms Data Stolen in Ransomware Attack

Written By

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

In cyber-physical systems (CPS), just one hour of downtime can outweigh an entire annual security budget. Learn how to master the Return on Security Investment (ROSI) to align security goals with the bottom-line priorities.

Register

Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization.

Register

People on the Move

Jacki Monson has joined CVS Health as SVP, Deputy CISO.

Gigi Schumm has been promoted to Chief Revenue Officer at Securonix.

Chris Sistrunk has been promoted to Practice Leader for Mandiant's OT Security Consulting.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.