December 12, 2022
The cybergang Bl00dy ransomware claims a cyber attack against the Italian Lucchini Group. The gang reported this within its Telegram channels. No official statement from the company has been published.
December 12, 2022
The cybergang Bl00dy ransomware claims a cyber attack against the Italian Lucchini Group. The gang reported this within its Telegram channels. No official statement from the company has been published.
November 17, 2022
Europea Microfusioni Aerospaziali S.p.A, leader in aerospace investment casting, has been hacked on November 17 and was forced to stop the production lines. ITV News reported on 23 November that a team of 40 technicians is employed in the Altirpini plants, including experts sent by Rolls Royce and cyber security professionals. The team is working tirelessly to restore the servers. Telephone lines are also down at the moment. The partial opening of some production departments continue with respect to the standards disseminated by Rolls Royce. The English multinational confirms the cyber attack and the demanding restoration work, and an update of the conditions in the shortest possible time.
October 18, 2022
Landi Renzo SpA was added to Hive’s leak site yesterday. In an email received by the Italian company the threat actors claimed to have infiltrated their network where they remained for 11 days, accessing files and documents before encrypting their servers. Hive claimed to have exfiltrated 534GB of data. The data includes proprietary information of the firm as well as personal information on employees and vendors.
DataBreaches sent an email inquiry to Landi Renzo yesterday, no reply has been received by publication. Hive has seemingly given the firm until November 7 to negotiate or reach some agreement with them.
March 20, 2023
Italian sports car giant, Ferrari S.p.A., reported Monday it suffered a ransomware attack affecting client details, but did not affect operations, officials said in an advisory.
The car company said it had been “recently contacted by a threat actor with a ransom demand related to certain client contact details. Upon receipt of the ransom demand, we immediately started an investigation in collaboration with a leading global third-party cybersecurity firm.”
In working with the third-party firm, they were able to confirm the stolen data was legitimate.
September 28, 2022
Redhotcyber.com (RHC) reported that a second computer attack against Alia Servizi Ambientali SpA was intercepted 6 months after the first. Alia issued a statement on their website stating they temporarily took IT systems offline and reported “from the checks carried out, the company confirms that there have been no intrusions and/or compromise of functions or data.”
Reportedly, the €400,000 ransom demanded was not paid. Systems operational 2 days later.
October 19, 2022
Ragnar Locker, hits the Italian chemical company Dollmar SpA. The hacking group leaked 35GB of data, including samples on the company’s letterhead, to make it clear that the data in its possession is real.
Publication on a data leak site generally occurs when the company has not paid the ransom.
no further updates.
August 29, 2022
Italy’s energy services firm GSE confirmed a hacking attack on its IT systems. GSE stated its gas purchases were not affected. The company added its website and portals were temporarily suspended to secure data.
The BlackCat ransomware group took credit for the attack on GSE, claiming to have stolen more than 700 GB of data from the agency.
October 2, 2022
Luxury car maker Ferrari is denying that it was hit with a ransomware attack after a gang added the company to its list of victims this week. The ransomware group RansomEXX posted to its leak site claiming to have stolen 7 GB of data from the company. The stolen documents allegedly include contracts, invoices, internal company information, repair manuals and more.
In a statement to The Record on Tuesday, a Ferrari spokesperson said it was aware of reports that documents from the company have been leaked online but said it is not dealing with any kind of ransomware attack or cybersecurity incident.
Developing story.
August 31, 2022
Italian oil company Eni’s computer networks suffered a cyberattack – and a possible ransomware attack – but the company appeared to have caught it in time, officials said Wednesday.
Eni disclosed a security breach, threat actors gained access to its network, but according to the company the intrusion had minor consequences because it was quickly detected.
“The internal protection systems have detected unauthorized access to the corporate network in recent days,” a spokesperson for the company said.