Daixin Team claims responsibility for AirAsia ransomware attack

Share post:

Daixin Team, a cybercrime group, has made public new data belonging to AirAsia, a Malaysian low-cost airline, on its data leak portal, just over a week after the company was hit by a ransomware attack on November 11 and 12.

The threat actors allegedly claim to have obtained personal information on five million unique passengers as well as all of the airline’s employees.

The Daixin Team has provided two spreadsheets that seem to to contain personal information from airline passengers and employees, such as date of birth, country of birth, where that person is from, when employed for employees, and the “secret question and answer” used to secure accounts.

According to the group, it shared a sample of the data with AirAsia after encrypting its database and demanding an undisclosed fee to unlock it and explain how it gained access to the network. It went on to say that the lack of organization on AirAsia Group’s network saved the company from further attacks.

Daixin Team added that, in order to avoid encrypting or destroying anything that could be life-threatening, it has avoided locking up critical files related to flying equipment but has completely locked out access to staff and passenger records until payment is made.

According to reports, AirAsia did not attempt to negotiate the amount, implying that they had no intention of paying anything.

The sources for this piece include an article in TheHackerNews.

Featured Tech Jobs

SUBSCRIBE NOW

Related articles

Controversial expansion of US surveillance powers nears Senate vote

The US Senate is poised to vote on a significant expansion of Section 702 of the Foreign Intelligence...

Russian-linked hackers target U.S. and European water systems

A Russian military-affiliated hacking group, Sandworm, is suspected of coordinating recent cyberattacks on water utilities in the U.S.,...

Cisco Duo’s Multifactor Authentication service compromised by social engineering attack

Cisco Duo, a prominent provider of multifactor authentication (MFA) services, has fallen victim to a cyberattack targeting one...

Cyber Security Today, April 17, 2024 – More suspicious attempts to take over open source projects, a data theft at a Cisco Duo partner,...

This episode reports on security updates from Delinea and PuTTY, and reports on bad bots and threat actors going after Zoo

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways