Black Hat hacker group Maze claims to have used ransomware to compromise the systems of insurance giant Chubb. They also claim to have stolen the company's data.
Brett Callow, a threat analyst at cybersecurity firm Emsisoft, told Cointelegraph on March 27 that Maze posted a claim of responsibility on its website. While the website has not provided direct evidence of the hack so far, Callow pointed to the facts that lend some credibility:
“Maze’s past victims include governments, law firms, healthcare providers, construction companies, medical research companies, healthcare providers, and more.”
Callow explained that the group typically claims responsibility after a successful attack, and then — if the victim doesn’t pay up — they publish a small amount of the stolen data as proof of the hack. At that point, if the contracted company still doesn’t pay up, Maze will start publishing increasingly sensitive data.

If the company doesn’t pay, they will release more data, sometimes in a staggered manner, to increase pressure. In previous cases, the criminals have also posted the data on Russian cybercrime forums with a note saying “Use this information in any way you wish.” In one previous incident, the group demanded $1 million to decrypt a company ’s data and an additional $1 million to destroy the stolen copy.
In February, Maze hacked five American law firms and demanded two 100 Bitcoins in exchange for restoring data and deleting extra copies of files . The ransom amount demanded from Chubb is currently unknown.
According to company data website Owler, Chubb is a Zurich -based insurance provider with 32,700 employees and annual revenue of $34.2 billion and appears to have no statement on the above news.
