Data Recovery Deemed Difficult After Ransomware Attack on Japan’s IDCF Cloud; 495 Companies and Municipalities Affected — BigGo Finance | #hacking | #cybersecurity | #infosec | #comptia | #pentest | #ransomware


IDC Frontier, operator of the Japanese cloud service “IDCF Cloud,” released its third update on October 8 regarding the ransomware attack against the service, revealing that customer data stored in the affected zones is unlikely to be retrievable or recoverable. This large-scale security incident affects 495 contracted companies and municipalities, forcing customers to rebuild their environments from their own backups.

The series of disruptions began at approximately 3:40 a.m. on October 7. The affected areas are four zones within East Japan Region 1 — tesla, henry, pascal, and joule — where virtual servers on the cloud have stopped and remain unable to restart. In its first update on October 7, the company disclosed unauthorized third-party access, and in its second update the same day, it confirmed the incident was a ransomware attack.

In the third update, the company stated that the detailed scope of impact and intrusion route remain under investigation, while addressing the data recovery outlook for the first time. Customers in the four affected zones are being advised to rebuild in a separate environment and restore data from their own backups, citing the extent of the damage and security considerations.

The key timeline to date is as follows: