Sun Pharma Hit by Infamous Ransomware Group ALPHV BlackCat


ALPHV BlackCat, the notorious ransomware group, has now come out and listed the Sun Pharmaceutical breach on their leak site on the darknet.

Updated Mar 25, 2023 | 10:48 PM IST

ALPHV BlackCat Strikes Again: Sun Pharma Latest Victim of Devastating Ransomware Attack with Threats to Release Sensitive Data!

On March 2nd 2023, drugmaker Sun Pharmaceutical reported an “information security incident” at the company, adding that the “impacted IT assets have been isolated”.

“The incident has not impacted our core systems and operations. The company is investigating the matter, and appropriate containment and remediation actions are being taken in a controlled manner to address the incident,” Sun told the Bombay Stock Exchange.

ALPHV, the threat actors behind the data breach , have now come out and listed the Sun Pharma ceutical breach on their leak site on the darknet. ALPHV, states on their leak site blog that their teams have been trying to establish a dialogue with Sun Pharmaceuticals. However, “but they (Sun Pharma) apparently decided that we would tolerate their clown attitude towards us. So it’s time to reveal some information about them.”
ALPHV is a ransomware group, they first infiltrate vulnerable systems, and then encrypt the data or the complete system. The group would then ask the company to pay a ransome to get the encryption key back. They also employ data exfiltration tactics. While many smaller companies give in, and that is why ransomware groups are growing in numbers. The I.T team at Sun Pharma did try to catch the hackers, the group in the blog post states that, “Also, their IT department is trying to catch us in their network (yes, we are still in their network), setting up dozens of honeypots in the hope that be caught after all.”

ALPHV BlackCat’s post on their Darknet Leak Site

Their claim of still having access to Sun Pharma’s network is quite a statement as the breach was first reported on March 2nd of this year. To get back at Sun Pharma, the ransomware group has posted screenshots of data samples on their leak site, in addition to a 28mb data sample. The group also claims that they have over 17TB (17000 GB) of data from the Indian Pharmaceutical major….

Source…