Ransomware group RansomHub has published 487 gigabytes of data it allegedly stole from motorcycle manufacturer Kawasaki Motors Europe (KME).
See also: RansomHub: Uses Kaspersky's TDSSKiller to disable EDR solutions

The company disclosed the incident last week, informing customers that it was recovering from a failed cyberattack in early September. As a precautionary measure, it said the servers were temporarily isolated and a cleanup process was underway to review all data and address any potential contamination.
“ KME’s IT department, IT staff at its branches, as well as external cybersecurity consultants spent the next week isolating and checking all servers and restoring their connectivity ,” KME said
The company says it has managed to restore over 90% of server functionality and resume normal operations "in relation to dealers, business management and third-party suppliers, such as logistics companies."
Although the motorcycle manufacturer did not say what kind of cyberattack it fell victim to, the RansomHub ransomware gang had already added Kawasaki Motors to its Tor-based leak website by the time the official incident notification was published.
See also: NoName ransomware: “Collaboration” with the RansomHub group?
The group claimed to have stolen 487 Gb of data from KME and threatened to make the allegedly stolen information public unless a ransom was paid.

Over the weekend, due to the failed extortion attempt, RansomHub carried out threat and the data was published.
As a division of Japanese manufacturer Kawasaki Heavy Industries, KME sells motorcycles, utility vehicles, powersport industry products, parts, accessories and equipment.
Active since February 2024, the RansomHub ransomware gang had more than 210 victims , excluding Kawasaki Motors, as of the end of August, the U.S. government said in a joint advisory late last month. However, not all victims are listed on the group's website.
See also: Is RansomHub behind the attack on Planned Parenthood?
Ransomware attacks are a growing threat in the digital world. During such an attack, crooks break into a computer system and encrypt critical data, making it inaccessible to its owner. They then demand a ransom to restore access to the data. These attacks can have serious financial and operational impacts for businesses and individuals, highlighting the need for strong security measures, such as regular backups and user education on cybersecurity practices.
Source: securityweek
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
