💰💣
Kaseya Security Incident
2-Jul-21
1543 days ago
Resolved
Incident Overview
Situation Description
Kaseya experienced a large-scale REvil ransomware attack affecting multiple managed service providers using its VSA platform, impacting over a thousand businesses.
Event Types
Ransomware
Malware / Destructive Attack
Industry Sector
TechnologyGeographic Scope
GlobalResponse Actions
Took Systems or Services Offline
Deployed Emergency Patches
Restored Systems from Secure Backups
Managed Public Narrative & Crisis Communications
Impact Analysis
Event Types (2 identified)
Ransomware
Malware / Destructive Attack
Financial Impact
$0 USDRecords Affected
1,000Data Types Compromised
Operational / System Data
Primary Impacts
Operational Disruption
Financial Loss
Key Decisions Made
Kaseya disabled its SaaS offering pending remediation.; Kaseya released patches for on-premises VSA servers.; Kaseya stated that all SaaS customers' service had been restored.
Technical Analysis
Attack Method
Supply Chain Compromise
Threat Actor Attribution
REvil
Sodinokibi
Vulnerability / Tool
Kaseya VSA
Additional Information
Quick Facts
- Company:
- Kaseya
- Date:
- 2-Jul-21
- Status:
- Resolved
- Decision Maker:
- nan
- Position:
- nan
- Published:
- 12/07/2021
Source Information
Original Query
"Kaseya" VSA ransomware attack "supply chain" responseTimeline
Information Published
12/07/2021
Incident Occurred
2-Jul-21 (1543 days ago)
Status: Resolved
Estimated resolution based on age