Tech UPTechnologyCybercriminals leak internal documents of the National Lottery

Cybercriminals leak internal documents of the National Lottery

A few days ago the National Lottery (Lotenal) suffered a ransomware attack at the hands of the Russian hacking group Avaddon. However, in addition to this violation, yesterday the group exposed 2.9 GB of internal information and indicated that the institution had 192 hours to contact them, otherwise they will display more information.

“The company does not want to cooperate with us, so we will filter some of their documents and we will give them 192 hours to communicate and cooperate with us,” the threat can read.

The documents that were exposed range from information on payments, policies, contracts, to databases from 2009 to 2021 and although so far Lotenal has not given a position on the situation, Avaddon said that the information that they did not expose may be released if there is no contact from the organization and they are even willing to sell it.

On Thursday, May 27, Avaddon cybercriminals revealed that they had attacked National Lottery information, and threatened to reveal confidential data if the institution concealed the attack or did not respond. Avaddon gave Lotenal 10 days to pay the ransom or make the information extracted from its systems public.

Lotenal acknowledged that it suffered a theft of information from the administrative area carried out by criminals operating internationally and after noticing the cyber attack, the institution notified the Cyber Police and said that it has the advice of the National Digital Strategy Coordination (CEDN) of the Presidency of the Republic, as well as experts in cybersecurity.

This cyberattack coincides with complaints from Predictions users, who have shared on social media that the betting services are not working properly.

According to the browser, Deep Web, there are at least 800 documents leaked and they highlight endorsements of official Lotenal emails, as well as sessions of the governing councils of the organization.

Cybersecurity experts, such as Andrés Velázquez, director of Mattica, have expressed their concern around this issue.

“It is a ransomware just like the one that affected the United States pipeline, it is Ransomware-as-a-Service, so that a third party could affect and keep a part of the profit,” Velázquez said in a tweet.

While Martina López, a security researcher at Eset, explains in an analysis that Avaddon is growing in the region, so this type of attack could be seen more.

“Although the most common targets of attack in its short period of life have been small and medium-sized companies in Europe and the United States, something that caught our attention is the number of people affected by this ransomware in Latin America,” says López .

In Brazil, Peru, Chile and Costa Rica, Avaddon victims have been reported in recent months, from government agencies to companies in the healthcare or telecommunications industries.

Cybersecurity specialists: what do they do and how much do they earn?

A document reviewed by Expansion of Guacamaya Leaks revealed that cyber attacks cost 538 million pesos and only 105 million are stopped. Hence the need for these specialists.

Espionage? To go to Qatar 2022 you must install these two apps

Ehteraz and Hayya are the apps that every tourist should have on their smartphone, but they are already worrying security experts

Identity fraud: 6 tips that Mexicans should follow so they don't get robbed when...

Not providing the INE credential, even when you visit a museum, and never losing sight of your cards when paying for your products or services can prevent you from having bad times.

Mexican government prepares Federal Cybersecurity Law against hacks to state companies and secretariats

Pemex, the National Lottery, Bancomext and the CFE are some of the state companies that have been hacked since 2019. Recently, the Ministry of National Defense was also hacked.

Solve with cybersecurity laws?

When talking about cybersecurity at the country level, we cannot only try to patch up the problem with a law, since it could get out of control by being steamrolled and leaving aside cross-cutting issues.

More