The hackers behind the Netwalker ransomware have released data they had stolen from K-Electric, Pakistan's largest private power company , after the victim failed to pay the ransom

At the beginning of the month, specifically on September 7, 2020, K-Electric was hit by Netwalker ransomware, resulting in the interruption of some online services, but fortunately not the supply of electricity.
The ransomware gang appears to have demanded $3,850,000 from K-Electric. It also informed the company that prior to encrypting the systems, it had stolen data and threatened to expose that data if the victim chose not to pay the ransom.

In a statement to BleepingComputer, K-Electric denied that any of its data was stolen in the ransomware attack.
“Karachi, September 11, 2020: Following the attempted cyberattack earlier this week and the ongoing investigation, the power utility has confirmed that initial investigation indicates that all customer data remained intact and secure, reiterating that critical services , including payment services, customer service centers and call centers, remained fully operational.“.
The gang behind Netwalker publishes stolen data
As it turns out, the company chose not to pay the ransom after the Netwalker gang published an file 8.5GB, said to belong to K-Electric and stolen during the ransomware attack in early September.
Pakistani cybersecurity Rewterz, which reviewed the contents of the exposed file, said it included sensitive data, such as financial details, customer information and more.
This data also includes financial statements regarding profits and losses, photos of customer statements, and more.
K-Electric customers should be concerned about their personal information, as it has likely been exposed online.
It is essential to have full transparency. K-Electric must be clear about the information exposed so that employees and customers can be protected.
K-Electric has not commented on the data leak
