Rite Aid Becomes RansomHub’s Latest Victim After Data Breach

Share This Post

This morning Rite Aid, an American drugstore chain, revealed news of falling victim in a data breach last month in what it called a “limited cybersecurity incident.”

On June 6, a third-party threat actor impersonated a company employee and gained access to certain company systems. This unauthorized access was detected soon after, and the company launched an investigation to determine the scope of the breach and whether any data was compromised.

Though the company has determined that no Social Security numbers, financial information, or patient information was affected in the breach, the threat actors did acquire data connected to purchases of retail products, including names, addresses, dates of birth, and driver’s licenses or government IDs.

The company has not released an official statement revealing who the threat actors are, but RansomHub gang has claimed that it breached the company’s systems.

“While having access to the Rite-Aid network, we obtained over 10GB of customer information equating to around 45 million lines of people’s personal information,” the ransomware group said on its Dark Web leak site. “This information includes name, address, dl_id number, DoB, Rite Aid rewards number.”

Rite Aid reportedly stopped negotiating a ransom, prompting the ransomware group to share snippets of what it claims is stolen data as proof and add a two-week deadline before more information will be leaked.

https://eu-images.contentstack.com/v3/assets/blt6d90778a997de1cd/blt03ca3f296b3fe424/669549cb2c4a8f0d048e98f2/riteaid(1800)_Robert_K._Chin_-_Storefronts_alamy.jpg?disable=upscale&width=1200&height=630&fit=crop

This post was originally published on this site

More Articles

Article

Navigating SEC Regulations In Cybersecurity And Incident Response

Free video resource for cybersecurity professionals. As 2024 approaches, we all know how vital it is to keep up to date with regulatory changes that affect our work. We get it – it’s a lot to juggle, especially when you’re in the trenches working on an investigation, handling, and responding to incidents.