Italy

Country

Data Breach at Compass Group Italia

November 27, 2023

A ransomware-type attack recently hit Compass Group Italia. The company manages numerous canteen services in schools throughout Italy. The data that may have been stolen can be sensitive depending on the company branch involved. Compass Group Italia said the company’s operations were not compromised. However, the focus of attention is now on data security, with the company working diligently to ensure that any sensitive information is protected.

The Akira group is suspected to be behind the attack.

read more

Large Scale DDoS Attacks at Italian Airports

October 5, 2023

Mysterious team Bangladesh , a criminal hacker group that has attracted attention in the past for attacks especially against Indian and Israeli sites, targeted three Italian airports: those of Valle d’Aosta, Calabria and Puglia .

The attacks are of the DDoS (Distributed denial of service) type and have caused slowdowns on the sites. The Italian Cybersecurity Agency, as far as we know, has alerted the subjects potentially affected by the offensive: airports and, more generally, providers of essential services.

“Aeroporti di Puglia communicates that the analyzes carried out did not reveal any compromises to the functioning of the web services which are still regularly online”. Nor was there any damage to the computer systems of the various airports, so everything is proceeding regularly both in Bari Palese, Foggia and Brindisi.

Since the beginning of the Hamas-Israel crisis, there is also an increase in activity on the web, with the participation – among others – of hacktivists such as those of the Mysterious team Bangladesh appear to be: groups who carry forward a political message with their actions.

read more

Italtel Cyberattack Claimed by Medusa

September 25, 2023

On Monday 25 September, the Italian company Italtel was the victim of a cyber attack. The cyber attack impacted Italtel’s IT infrastructure, limiting access and use of some company systems. The situation continues to evolve. The Italtel affair adds to the many IT incidents involving large Italian companies.
Italtel has already started communicating with its customers and suppliers about the cyber attack. Any subsequent interactions will be managed by the competent figures within the company.

The Medusa ransomware criminal gang claims the ransomware attack, Italtel has as of today not confirmed the attack. Italtel’s target markets are Telco & Media, Industry & Manufacturing, Energy & Transportation, Banking & Insurance, Healthcare and Public Administration.

read more

Hackers disrupt IT network of Rome’s Public Utility and Power Company, ACEA

February 2, 2023

Acea’s computer system network was restored 4 days after the cyber attack by the Black Basta ransomware group.

“The Group’s websites and the online platforms for managing the commercial aspects of water, electricity and gas supplies are operational, as well as – from Saturday – the contact center service of the Group companies for customers” The Company reiterates “that the IT disruption generated by the cyber attack did not affect the essential electricity and water distribution services which have always been regularly guaranteed”.

The Italian cybersecurity agency says at least a dozen hacks are likely tied to the BlackBasta ransomware group. Investigators say the ransomware campaign may have hit thousands of organizations worldwide since Thursday. The first attack was against energy company Acea.

read more

Data Breach at Luxottica’s Eyemed Vision Affects 820K Patients.

August 5, 2020

Luxottica disclosed that their appointment scheduling application suffered a data breach after being hacked on August 5th, 2020. The breach has exposed the personal and protected health information of 829,454 patients at partner eye care practices. Luxottica’s Eyemed division partners get access to a web-based appointment scheduling application.

This data breach announcement comes on the heels of a Nefilim ransomware attack on Luxottica. This September 2020 attack caused significant outages, interruptions, and theft of unencrypted files.

read more

Ransomware Attack Affects Worldwide Operations of Italian Eyewear Giant Luxottica

September 18, 2020

Italy-based eyewear and eyecare giant Luxottica has reportedly suffered a ransomware attack that has led to the shutdown of operations in Italy and China and data leaked on the dark web. .

Union sources confirmed to Italian media Ansa that the employees were sent home due to “serious IT problems.” The ransomware attack affected the company worldwide, and for days offices were not fully operational.

Security official Nicola Vanin stated in a LinkedIn post “Once the event was analysed, the clues were collected in less than 24 hours and the procedure for cleaning up the affected servers began. Work activities are gradually returning to normal in the #Milano plants and headquarters.”

He also stated that “There is currently no access or theft of information from users and consumers.” However a month later the Windows Nefilim ransomware group leaked financial and human resources operations data on the dark web.

read more

Luxottica Eyewear Group discloses 2021 Attack Affecting 70M Customers

March 16, 2021

Luxottica Group confirmed in May 2023 that one of its partners suffered a data breach in 2021. The breach exposed the personal information of 70 million customers. It was discovered after data was put up for sale on the dark web.

Andrea Draghetti, the leading researcher of the Italian cybersecurity firm D3Lab, analyzed the leaked data. She confirmed to BleepingComputer that it contains 305 million lines, 74.4 million unique email addresses, and 2.6 million unique domain email addresses.

Draghetti also determined the exfiltration date to be March 16th, 2021. This meant that the data likely originated from a previously undisclosed data breach.

read more

Ransomware Disrupts Operations at Italian Water Management Company

April 28, 2023

Alto Calore Servizi SpA, an Italian company that provides drinking water to nearly half a million people said a recent hack rendered all of their IT systems unusable.

The company runs the collection, supply and distribution of drinking water for 125 municipalities Avellino and Benevento — two provinces in southern Italy. “It will not be possible to carry out any operations or provide information that requires querying the database,” the company said.

The organization did not respond to requests for comment about whether customers are impacted by the incident, but it appears the distribution of water is not affected by the attack.

The Medusa ransomware group took credit for the attack and said it took customer data, contracts, minutes from board meetings, reports, pipe distribution information, expansion documents and more.

read more

Production Outage after Massive Ransomware Attack at Italian Fruttagel

December 11, 2022

Fruttagel, an Agricultural Cooperative Company from Ravenna, suffered an external computer attack. The attack partially and temporarily compromised the company information systems. “The company – reads the note – promptly activated all the emergency procedures, resorting to the expertise of the personnel and cybersecurity experts. However, it was not possible to avoid huge production damages, with the consequent temporary impossibility to send the its products to all customers. The IT system check and recovery times will take a few days, with the hope of being able to restart shipping activities on Thursday 15 December”.

“What happened, despite our prompt reaction, is making it impossible to carry out all the production activities and to follow up with the shipment of the packaged products, with considerable damage for the company and obviously for our customers” – says Stanislao Fabbrino, managing director of Fruttagel -.

On January 7, BlackCat/ALPHV published more than 720 gigabytes of corporate data, listing it includes financial and corporate documents, customer data, contracts with companies like IKEA, PepsiCO, etc. SGS certificates, private date, GDPR files, employee contacts, management, large customer base with global companies. Drawings of the company’s products.

read more

Italian Oven Manufacturer Suspends Production after Cyberattack

December 10, 2022

UNOX was the victim of a cyber attack. The company immediately activated its security protocols, blocking the attack. As a safety measure, the company initially suspended production activities for 2 days as a precaution in order to carry out the appropriate checks. Since Wednesday 14 December all production activities have restarted in total safety. There is no risk relating to short, medium and long-term business continuity.

read more