Threat Intelligence Brief
Curated summary with source attribution
Source: ransomware.live
Threat Risk: High
Victim: The University of the West Indies
Incident: Ransomware attack and credential exfiltration.
Impact: Massive exposure of over 5,700 user and employee credentials.
Attacker: Unidentified ransomware operators
Analysis: The organization has been listed on a ransomware leak site, indicating a successful infiltration and data exfiltration event. The volume of compromised credentials suggests a deep breach of the university’s identity systems, likely facilitating further lateral movement.
Recommendations: Enforce a mandatory password reset for all users and employees; Implement phishing-resistant multi-factor authentication (MFA) university-wide; Conduct a comprehensive audit of the external attack surface to close entry points
Source: Ransomware.live
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source