Japan-based electronics manufacturer Casio said the ransomware attack , which took place in October 2024, led to a data breach of approximately 8,500 people.

The individuals affected are primarily employees and business partners of the company. However, a small set of information customer in the exposed data.
See also: Green Bay Packers: Data breach affects online shop customers
The Underground gang behind the ransomware attack
The cyberattack occurred on October 5 and began with phishing techniques, which compromised the company's network and caused an outage of IT systems through ransomware.
Five days later, the Underground ransomware gang claimed responsibility and demanded a ransom. The hackers threatened to reveal confidential documents , financial records, project information, and employee data if Casio did not pay up.
Casio later confirmed that the Underground gang had stolen the personal data of employees, partners, and customers . However, it did not disclose the number of people affected at the time.
See also: American Addiction Centers: Data breach affects 422,000 people
The investigation is now complete and Casio has been able to provide more details about the data breach.
According to the company's latest announcement, the following are affected:
- Employees (6,456 people): Name, employee number, email, gender, date of birth, family details, address, phone number, tax registration numbers and HQ system account information.
- Associates (1,931 people): Name, email address, phone number, company name, company address, and identification information (for some).
- Customers (91 people): Delivery address, name, phone number, date of purchase, and product name for items requiring delivery and installation.
Some internal documents, including invoices, contracts, and meeting materials. were also leaked
Individuals affected by the data breach will receive personalized notifications from Casio.
Casio clarified that no customer data or credit card information was exposed, as its databases containing customer information were not affected.
The Japanese company also made it clear that it did not negotiate with the cybercriminals.
See also: Ascension: Data breach affects 5.6 million people
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

Additionally, most of the company's services that were affected have returned, although some have not been fully recovered.
Ransomware protection
- Implement multi-factor authentication (MFA) for all user accounts
- Enable firewall on all devices connected to your network
- Keep sensitive data encrypted
- Update all your devices and systems with the latest security patches
- Conduct regular security audits and penetration testing
- Use strong, unique passwords and change them regularly.
- Limit user access to only necessary systems and information
- Consider using solutions email security for additional protection against phishing attacks
- Have a recovery plan to quickly restore systems in the event of an attack
- Back up your data regularly
- Stay up to date on the latest ransomware trends and tactics used by attackers
Source: www.bleepingcomputer.com
