
The notorious ransomware group, Hunters International, has reportedly infiltrated Tata Technologies, a subsidiary of Tata Motors, claiming to have exfiltrated 1.4 terabytes of sensitive data.
Details of the Breach
According to a regulatory filing with the Indian National Stock Exchange, the cyber attack occurred in January. Tata Technologies, a leader in product engineering services for automotive and aerospace sectors, confirmed the breach.
The company, which boasts over 11,000 employees across 18 global delivery centers, reported that some IT services were temporarily suspended as a precaution. These services have since been restored, and client delivery operations remained unaffected throughout the incident.
Response and Investigation
Upon discovery of the ransomware attack, Tata Technologies swiftly disconnected certain IT systems to mitigate the threat. The company has informed relevant authorities and is conducting a thorough investigation with the assistance of external cybersecurity experts.
Hunters International has listed Tata Technologies as a victim on its Tor-based leak site, threatening to release the stolen data.
Previous Incidents and Group Background
In a related context, Tata Power, another major Indian company, suffered a cyber attack on October 14, 2022. The breach impacted several IT systems, prompting immediate response actions. Subsequently, the Hive ransomware group leaked stolen data, which included contracts and employee information.
Hunters International emerged following the takedown of Hive's infrastructure by international authorities. Experts suggest that Hunters International may be a rebranded version of the Hive group, as they employ similar coding techniques.
Takeaway
This incident underscores the persistent threat of ransomware attacks on major corporations. Organizations are advised to bolster their cybersecurity measures and remain vigilant against evolving cyber threats. Learn more about zero-day vulnerabilities in our detailed Research section.