Skip to content

Despite the attack, Encevo demonstrates resilience, yet continues to evaluate the extent of data damage

Energy supplier in Luxembourg's capacity to prevent a shutdown may have contributed to its decision against paying a ransom.

Encevo shows determination following the attack, still evaluating the extent of data loss
Encevo shows determination following the attack, still evaluating the extent of data loss

Despite the attack, Encevo demonstrates resilience, yet continues to evaluate the extent of data damage

In a significant turn of events, Encevo, Luxembourg's largest energy company, has successfully defended against a ransomware attack. The attack, carried out by the group known as ALPHV, is the latest in a series of high-profile cyber incidents that have raised concerns about the vulnerability of critical infrastructure.

ALPHV, previously known as the DarkSide ransomware group, is responsible for the attack on Colonial Pipeline in May 2021, which served as a wake-up call for the risks posed to critical infrastructure. The group claimed to have exfiltrated over 150 gigabytes of sensitive data during the attack on Encevo.

However, Encevo reacted quickly to the attack. They bolstered systems monitoring, restored their servers from safe backups, increased the security of remote-access platforms, and changed all passwords. Despite the threat to publish the data, Encevo did not comply with the ransom demand from ALPHV.

Encevo is currently working to restore systems and data made inaccessible last month due to the ransomware attack. They are also working to inform each person potentially impacted by the attack, but do not yet have all the necessary information to do so.

The energy vertical finds itself increasingly in the crosshairs of hackers, according to Mauricio Sanchez, research director at Dell'Oro Group. This is because energy companies are part of a nation's critical infrastructure, making them extremely high-profile targets. The latest attack on Encevo signifies pipeline operators as being on the front line of a new frontier in the battle against cybercriminals.

The low barrier to entry for cybercriminals has resulted in a surge of digital pirates roaming our global networks. Nearly four in five organizations impacted by ransomware attacks have paid the ransom to regain access to corporate data, according to Kaspersky's May report. However, Encevo's quick and effective response to the ransomware attack serves as a strategic blueprint for other organizations.

If Encevo's operations were shut down or it had uncovered a broader threat during its investigation, it might have been more compelled to pay ALPHV's ransom demand. However, the company is confident that its service will be back to normal in the coming days.

The chairman of Encevo is not explicitly named in the available search results. Despite this, the company's resilience in the face of a cyber attack is a testament to their preparedness and commitment to protecting their systems and data.

The attack on Colonial Pipeline in May 2021 embodied the risk to critical infrastructure. The incident served as a reminder that cybersecurity is no longer just an IT issue, but a matter of national security. As such, it is crucial for organizations to prioritize cybersecurity and be prepared to respond effectively to any potential threats.

Read also:

Latest