teiss – News – River Financial Corporation says stolen data from June ransomware attack was deleted by hackers | #ransomware | #cybercrime


The parent company of River Bank & Trust says it obtained assurances that data taken during a June cyberattack has been destroyed, though its investigation into the incident’s full scope remains unfinished.

River Financial Corporation, the holding company behind River Bank & Trust, has disclosed that it received representations from the threat actor behind a June ransomware attack confirming the deletion of data stolen from its network. The confirmation comes as the company’s broader investigation into the breach’s scope and impact continues.

The intrusion began around June 16, when an unauthorized party gained access to River’s network environment. The company identified the activity three days later, on June 19, and determined that ransomware had been deployed across portions of its server environment. River responded by disabling compromised administrative accounts and taking the affected systems offline.

River is working with a third-party forensic firm to determine the nature and scope of the incident, including whether personally identifiable information was accessed or removed from its systems. In a filing submitted to the U.S. Securities and Exchange Commission on June 25, the company said that portion of the investigation was still underway.

Later SEC filings disclosed that attackers had in fact accessed parts of River’s network and exfiltrated data, and that the company has since been named in at least four lawsuits over the incident. Despite that confirmation, a July 30 filing shows River has still not determined whether any personal information was among the data taken.

As part of its response, the company said it took steps to suppress the exposed data, including securing representations from the threat actor that the stolen material had been deleted from its possession. That language suggests the deletion assurance may have followed a ransom payment, though River has not confirmed this directly.

River has not identified the threat actor behind the attack or disclosed how the group gained access to its network. The company said it has not yet determined whether the incident is reasonably likely to have a material effect on its business or financial condition, and indicated it will file an amended report once that determination has been made.



Click Here For The Original Source.

——————————————————–

..........

.

.

National Cyber Security

FREE
VIEW