Cloud provider Blackbaud pays the price for its ransomware cover-up
Date:
Mon, 13 Mar 2023 15:00:36 +0000
Description:
Blackbaud failed to report adequately about a 2020 ransomware attack, which has come back to haunt it with a massive fine.
FULL STORY ======================================================================
Cloud software company Blackbaud has agreed to pay a $3 million settlement
for misleading disclosures about a ransomware attack that happened almost three years ago, in May 2020.
The public company, which provides donor data management software to non-profit organizations and educational establishments, had failed, until
now , to disclose a ransomware attack it was aware of at the time.
Said attack was believed to have affected over 13,000 customers, putting personally identifiable information like names, addresses, email addresses, and phone numbers at risk. Blackbaud's 2020 ransomware attack
The US Securities and Exchange Commission (SEC) explained that [...] in
August 2020, the company filed a quarterly report with the SEC that omitted this material information about the scope of the attack and misleadingly characterized the risk of an attacker obtaining such sensitive donor information as hypothetical.
Chief of the SEC Enforcement Divisions Crypto Assets and Cyber Unit, David Hirsch, noted that Blackbaud failed to inform investors in an accurate and timely manner about the ransomware attack - an obligation it has as a public company.
However, it complied with the threat and paid the cybercriminals demand with confirmation that the copy they removed had been destroyed, citing customer data as a key priority in its decision. Read more
The best ransomware protection
These were the worst ransomware attackers of 2022
Most ransomware payments go on to fund many further attacks
Due to its poor communication and subsequent events, various sections and rules of the Securities Act of 1933 and Securities Exchange Act of 1934 were found to have been violated, resulting in a $3 million civil penalty and Blackbauds cease and desist from committing these violations.
The company has not yet made a public comment about the settlement, nor has
it issued any reassurance to customers whose doubts have been raised
following the ransomware attack entering public discussions. Here are the
best cloud hosting providers and best cloud backup tools right now
======================================================================
Link to news story:
https://www.techradar.com/news/cloud-provider-blackbaud-pays-the-price-for-its -ransomware-cover-up
--- Mystic BBS v1.12 A47 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)