Categories: Data Breach

Accenture Confirms Hack After LockBit Ransomware Data Leak Threats

Accenture Confirms Hack After LockBit Ransomware Data Leak Threats

Accenture, a global IT consultancy giant has allegedly been hit by a ransomware cyberattack from the LockBit ransomware gang.

Accenture is an IT giant known to serve a wide range of industries including automobiles, banks, government, technology, energy, telecoms, and many more.

Valued at $44.3 billion, Accenture is one of the world’s largest tech consultancy firms employing around 569,000 employees across 50 countries.

Ransomware group threatening to leak stolen data

A ransomware group known as LockBit 2.0 is threatening to publish files data allegedly stolen from Accenture during a recent cyberattack.

Also Read: What is Social Engineering and How Does it Work?

The threat actors state that they will publish the data later today if a ransom is not paid, as seen by BleepingComputer:

LockBit ransomware operator leak site has a countdown to leak

While LockBit has not shown proof of the stolen data, they claim to be willing to sell it to any interested parties.

“These people are beyond privacy and security. I really hope that their services are better than what I saw as an insider. If you’re interested in buying some databases reach us,” states LockBit on their data leak site.

The exact details as to when the breach occurred, when was it detected, its scope or, the technical cause of exploitation are yet to be known.

Accenture told BleepingComputer that affected systems had been recovered from a backup:

“Through our security controls and protocols, we identified irregular activity in one of our environments. We immediately contained the matter and isolated the affected servers.”

“We fully restored our affected systems from back-up. There was no impact on Accenture’s operations, or on our clients’ systems,” Accenture told BleepingComputer.

6 TB of files stolen, $50 million ransom demand

In conversations seen by the Cyble research team, the LockBit ransomware gang claims to have stolen six terabytes of data from Accenture and are demanding a $50 million ransom.

The threat actors claim to have gotten access to Accenture’s network via a corporate “insider.”

Sources familiar with the attack have told BleepingComputer that Accenture had confirmed the ransomware attack to at least one CTI vendor, and the IT services provider is also in the process of notifying more customers.

Additionally, cybercrime intelligence firm Hudson Rock shared that Accenture had 2,500 compromised computers belonging to employees and partners:

LockBit has previously hit many victims, including UK’s Merseyrail train network.

Also Read: 4 Reasons Why You Need an Actively Scanning Antivirus Software

Earlier this week, the Australian government had warned of escalating LockBit 2.0 ransomware attacks, after the group was seen actively recruiting insiders at companies they plan on breaching, in exchange for millions of dollars in rewards.

Edit 12:40 PM ET: BleepingComputer had reached out to Accenture well in advance of publishing but received a quote after press time which has been added with proper attribution.

Privacy Ninja

Recent Posts

Role of Enhanced Access Controls in Safeguarding Personal Data in Telecommunications

Role of Enhanced Access Controls in Safeguarding Personal Data in Telecommunications that every Organisation in…

1 week ago

Role of Effective Incident Response Procedures in Strengthening Data Security

Effective Incident Response Procedures in Strengthening Data Security that every Organisation in Singapore should know…

2 weeks ago

Strengthening Your Cyber Defenses: The Crucial Role of Regular Vulnerability Scanning

Crucial Role of Regular Vulnerability Scanning that every Organisation in Singapore should know. Strengthening Your…

2 weeks ago

Enhancing Data Security with Multi-Factor Authentication

Enhancing Data Security with Multi-Factor Authentication that every Organisation in Singapore should know. Enhancing Data…

3 weeks ago

A Strong Password Policy: Your Organization’s First Line of Defense Against Data Breaches

Strong Password Policy as a first line of defense against data breaches for Organisations in…

3 weeks ago

Enhancing Website Security: The Importance of Efficient Access Controls

Importance of Efficient Access Controls that every Organisation in Singapore should take note of. Enhancing…

4 weeks ago