Walmart Denies Yanluowang Ransomware Attack

Share post:

Walmart has denied that it suffered from a ransomware attack launched by the Yanluowang gang. Clarification became necessary after the Yanluowang ransomware gang posted an entry to their data leak website on Monday, claiming that they breached the retailer and encrypted between 40,000 and 50,000 devices.

In a statement, Walmart denied the claims. Walmart stated that their “Information Security team is monitoring our systems 24/7,” and believes the claims are untrue.

“We believe this claim is inaccurate and are not aware of a successful attack in this regard on our devices,” a Walmart spokesperson said.

Yanluowang ransomware gang claimed to have carried out the attack over a month ago and were able to encrypt devices but not steal any data. The gang demanded a $55 million ransom from hackers, but never received a response from Walmart.

The entry on Yanluowang’s data leak website contains various files that allegedly contain information extracted from Walmart’s Windows domain during the attack.

Although the attack has been denied, the files on the data leak site contain information purportedly from Walmart’s internal network, including a security certificate, a list of domain users, and the output of a Kerberoasting attack.

The sources for this piece include an article in BleepingComputer.

SUBSCRIBE NOW

Related articles

Cyber Security Today, Week in Review for week ending Friday May 17, 2024

Welcome to Cyber Security Today. This is the Week in Review for the week ending Friday, May 17th,...

Cyber Security Today, May 17, 2024 – Malware hiding in Apache Tomcat servers

Malware hiding in Apache Tomcat servers, new backdoors found, and more Welcome to Cyber Security Today. It's Friday, May...

Resignations at OpenAI. Hashtag Trending for Friday, May 17, 2024

The question changes from “where’s Ilya” to what took so long?  Did Musk’s Neuralink team know there might...

Google does the unthinkable – reportedly erasing a 125 billion dollar pension fund

It's reported that Google inadvertently erased the Google Cloud account of UniSuper, an Australian pension fund valued at...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways