The ransomware group that collected an $11 million payment from meat producer JBS SA about a month ago has begun a widespread attack that has likely infected hundreds of organizations world-wide and tens of thousands of computers, according to cybersecurity experts.

The group, known as REvil, has focused its attack on Kaseya VSA, software used by large companies and technology-service providers to manage and distribute software updates to systems on computer networks, according to security researchers and VSA’s maker, Kaseya Ltd.

REvil is a well-known purveyor of ransomware—malicious software that locks up a victim’s computer until a digital ransom is paid, typically in the form of bitcoin. This latest attack appears to be its largest ever. The incident may have infected as many as 40,000 computers world-wide, according to cybersecurity experts.

The use of trusted partners like software makers or service providers to identify and compromise new victims, often called a supply-chain attack, is unusual in cases of ransomware, in which hackers shut down the systems of institutions and demand payment to allow them to regain control. The Kaseya incident appears to be the largest and most significant such attack to date, said Brett Callow, a threat analyst for cybersecurity company Emsisoft.

Upon learning of the attack Friday, Kaseya immediately shut down its servers and began warning customers, the company said. Friday evening it said only customers running the software on their own servers, rather than users of Kaseya’s online service, appeared to have been affected. In an update Saturday morning, the company recommended that users of its software keep those products offline until further notice. The company also is keeping its own cloud-based services offline until it determines that it can safely restart them, Kaseya said.

This post first appeared on wsj.com

Leave a Reply

Your email address will not be published. Required fields are marked *

You May Also Like

$100 Billion Semiconductor Bet Hinges on Remaking Upstate New York’s Workforce

By Annie Linskey and Joseph De Avila | Photographs by Lauren Petracca…

Disney refuses to cut lesbian reference in ‘Doctor Strange 2,’ Saudi Arabia says

Saudi Arabia’s cinema classification board is disputing reports that the upcoming Marvel tentpole “Doctor Strange in…

Former West Virginia legislator who stormed Capitol pleads guilty

WASHINGTON — A former West Virginia Republican lawmaker has pleaded guilty to…

Suspect confesses to Highland Park shooting and plotted second attack in Wisconsin, prosecutor says

HIGHLAND PARK, Ill. — The man accused of killing seven people at…