The company behind Italian luxury fashion brand Moncler, Moncler SpA, has confirmed that it suffered breach following a ransomware attack by the AlphV/BlackCat group in December 2021. During the attack, cybercriminals stole the company's files and now appear to have published them on the dark web.

The attack took place in the last week of 2021, when the company announced an outage of its IT services. However, at the time, it said that the only impact of the attack was this temporary outage.
See also: Cyber espionage campaign targets renewable energy sector
Ten days after this, Moncler published an update on the incident, reactivating its logistics systems and prioritizing order shipments that had been delayed due to the ransomware attack.
According to Bleeping Computer, Moncler has now confirmed that some data related to employees, former employees, suppliers, consultants, business partners, and customers has been leaked onto the webdark by the AlphaV (BlackCat) ransomware gang.
The company stated that it refused to pay the ransom, and so the attackers decided to leak the stolen data (as happens in most cases where the ransom is not paid).
“With regard to information linked to customers, the company informs that no data related to credit cards or other means of payment has been affected, as the company does not store such data in its systems,” Moncler said in its statement to BleepingComputer.
See also: Phishing attacks: Which major companies do scammers imitate to trick victims?

“Moncler recalls that all information in the possession of criminals is the result of illegal activities and therefore the acquisition, use and dissemination thereof constitutes a criminal offense,” the company added.
Finally, Moncler said it has informed the Italian Data Protection Authority about the ransomware attack and data breach.
ALPHV BlackCat ransomware
Moncler is one of the first victims of the ALPHV (BlackCat) ransomware. This is a new Ransomware-as-a-Service (RaaS) operation, launched in early December 2021.
The ALPHV ransomware gang published Moncler data on its dark web data leak site and reportedly demanded $3 million to keep the data private.
See also: Qlocker ransomware returns targeting QNAP NAS devices
Screenshots that have been published show that the stolen data includes profit and loss statements, spreadsheets with customer information, invoices and other documents.
The gang is trying to sell the data of wealthy Moncler customers to other cybercriminals.
Source: Bleeping Computer
