The US Marshals have been hit by a major ransomware attack

Ransomware
(Image credit: Pixabay)

The U.S. Marshals Service (USMS), a sector within the Department of Justice, has been hit with what it describes as a “major” ransomware attack, in which sensitive employee data might have been taken.

Department spokesperson Drew Wade confirmed the incident, which he said took place on February 17, was a “ransomware and data exfiltration event affecting a stand-alone USMS system”.

That system has since been disconnected from the wider USMS network, while the organization investigates the aftermath. Apparently, employee data was taken, together with sensitive data on the department’s work. 

Unknown threat actors

"The affected system contains law enforcement sensitive information, including returns from legal process, administrative information, and personally identifiable information pertaining to subjects of USMS investigations, third parties, and certain USMS employees," Wade said.

BleepingComputer reported that sources “close to the incident” confirmed the attackers did not access the department’s Witness Security Files Information System - the witness protection database. 

As the investigation continues, other details are scarce. At this moment, it is unknown which group is behind the attack, how much money they’re demanding in exchange for the decryption key, or how they managed to infiltrate the USMS systems. 

What we do know is that this isn’t USMS’ first cyber-incident. Back in 2020, BleepingComputer reminds, the department exposed the details of more than 380,000 former and current inmates, including their names, birthdays, postal addresses, and Social Security numbers. 

In the incident, the attackers managed to breach one of USMS’ public-facing servers called DSNet. These servers were handling the housing and movement of prisoners, the report said.

Law enforcement organizations in the States are often in the crosshairs of malware operators. Just a week ago, it was reported that the FBI suffered a cyberattack in which a New York Field Office computer system, used by the FBI to investigate cases of child sexual exploitation, was compromised. 

Via: BleepingComputer

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
security
Ransomware gangs allegedly hit two major US healthcare firms, 300,000 patients have data stolen
Ransomware
8base ransomware site taken down in global police operation
ransomware avast
The biggest addiction treatment provider in the US says it was hit by data breach
US coast guard boat
US Coast Guard paychecks delayed by cyberattack
An abstract image of padlocks overlaying a digital background.
US healthcare giant Ascension says ransomware attack affected nearly six million customers
An American flag flying outside the US Capitol building against a blue sky
US military and defense contractors hit with Infostealer malware
Latest in Security
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Image depicting a hand on a scanner
Hackers are targeting unpatched ServiceNow instances that exploit 3 separate year-old vulnerabilities
ransomware avast
Ransomware attacks are costing Government offices a month of downtime on average
Lock on Laptop Screen
Data breach at Pennsylvania education union potentially exposes 500,000 victims
Latest in News
Seth Milchick and Kier Eagan's animatronic speaking in Severance season 2 episode 10
Apple TV+ announces Severance has been renewed for season 3 after that devastating finale
Apple's Craig Federighi presenting customization options in iOS 18 at the Worldwide Developers Conference (WWDC) 2024.
iOS 19: new features, a new design, and everything you need to know
Spotify's new Concerts Near You playlist feature showing a list of songs by local touring artists
Spotify has launched a new Concerts Near You playlist, making it easier for you to see if your favorite artists are performing in your area
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
The new Dr. Squatch Call of Duty collection.
Latest Call of Duty collaboration finally lets you rub your body with Soap - and I can't believe I just wrote that
Samsung S95D with peacock feather on screen
Samsung says an OLED-beating new screen tech could come sooner than we thought – but I wouldn't expect it in 4K TVs right away