Saudi Aramco facing $50M cyber extortion over leaked data

The Saudi Arabian Oil Co., better known as Saudi Aramco, told The Associated Press that it “recently became aware of the indirect release of a limited amount of company data which was held by third-party contractors.”

July 22, 2021 11:08 am | Updated 11:08 am IST

Saudi Aramco facing $50M cyber extortion over leaked data.

Saudi Aramco facing $50M cyber extortion over leaked data.

Saudi Arabia’s state oil giant acknowledged Wednesday that leaked data from the company — files now apparently being used in a cyber-extortion attempt involving a $50 million ransom demand — likely came from one of its contractors.

(Subscribe to our Today's Cache newsletter for a quick snapshot of top 5 tech stories. Click here to subscribe for free.)

The Saudi Arabian Oil Co., better known as Saudi Aramco, told The Associated Press that it “recently became aware of the indirect release of a limited amount of company data which was held by third-party contractors.”

The oil firm did not say which contractor found itself affected nor whether that contractor had been hacked or if the information leaked out another way.

“We confirm that the release of data was not due to a breach of our systems, has no impact on our operations and the company continues to maintain a robust cybersecurity posture,” Aramco said.

A page accessed by the AP on the darknet — a part of the internet hosted within an encrypted network and accessible only through specialized anonymity-providing tools — claimed the extortionist held 1 terabyte worth of Aramco data. A terabyte is 1,000 gigabytes.

Also Read : Pegasus spyware used to ‘snoop’ on Indian journalists, activists

The page offered Aramco a chance to have the data deleted for $50 million in cryptocurrency, while another timer counted down from $5 million, likely in an effort to pressure the company. It remains unclear who is behind the ransom plot.

Aramco has been targeted before by a cyberattack. In 2012, the kingdom's oil giant found itself hit by the so-called Shamoon computer virus, which deleted hard drives and then displayed a picture of a burning American flag on computer screens. The attack forced Aramco to shut down its network and destroy over 30,000 computers.

U.S. officials later blamed that attack on Iran, whose nuclear enrichment program had just been targeted by the Stuxnet virus, likely an American and Israeli creation.

In 2017, another virus swept across the kingdom and disrupted computers at Sadara, a joint venture between Aramco and Michigan-based Dow Chemical Co. Officials at the time warned it could be another version of Shamoon.

Also Read : Pegasus Issue | What are zero-click attacks and how do they infect smartphones?

The sliver of Aramco that now trades publicly on Riyadh's Tadawul stock exchange stood at 34.90 riyals a share, or $9.30, after trading stopped last week for the Muslim holiday of Eid al-Adha. That puts the company's valuation at around $1.8 trillion, making it one of the world's most-valued companies.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.