Search

San Francisco 49ers Hit by Ransomware Attack, Team's Financial Data Said to Be Stolen

News of the attack comes two days after the FBI and US Secret Service issued an alert on BlackByte ransomware.

Advertisement
Highlights
  • Ransomware victims have included operators of maritime fuel depots
  • BlackByte is a ransomware-as-a-service group
  • BlackByte's malware is hardcoded to not encrypt systems that use Russian
San Francisco 49ers Hit by Ransomware Attack, Team's Financial Data Said to Be Stolen

Ransomware gangs hack targets and hold their data hostage through encryption

The San Francisco 49ers have been hit by a ransomware attack, with cyber criminals claiming they stole some of the football team's financial data.

The ransomware gang BlackByte recently posted some of the purportedly stolen team documents on a dark web site in a file marked "2020 Invoices." The gang did not make any of its ransom demands public or specify how much data it had stolen or encrypted.

The team, which is among the most valuable and storied franchises in the NFL and lost a close playoff game two week ago, said in a statement Sunday that it recently became aware of a “network security incident" that had disrupted some of its corporate IT network systems. The 49ers said they'd notified law enforcement and hired cybersecurity firms to assist.

“To date, we have no indication that this incident involves systems outside of our corporate network, such as those connected to Levi's Stadium operations or ticket holders,” the team said in a statement, referencing its home stadium.

News of the attack comes two days after the FBI and US Secret Service issued an alert on BlackByte ransomware, saying it had “compromised multiple US and foreign businesses, including entities in at least three US critical infrastructure sectors” since November.

Ransomware gangs, which hack targets and hold their data hostage through encryption, have caused widespread havoc in the last year with high-profile attacks on the world's largest meat-packing company, the biggest US fuel pipeline, and other targets. Western governments have pledged to crack down on the cyber criminals, who operate largely in and around Russia, but have little to show for their efforts.

In the past month, ransomware victims have included operators of maritime fuel depots in Belgium and Germany and media outlets in Portugal. A cyberattack on the wireless provider Vodafone in Portugal this past week had all the hallmarks of ransomware, though the company's CEO for Portugal said it received no ransomware demand.

BlackByte is a ransomware-as-a-service group. That means it's decentralised, with independent operators developing the malware, hacking into organisations or filling other roles. It's part of a trend of ransomware groups becoming increasing professionalised. A recent report by the FBI, NSA, and others said that ransomware operators are even setting up an arbitration system to resolve payment disputes among themselves.

Brett Callow, a threat analyst at the cybersecurity firm Emisoft, said BlackByte's malware, like many ransomware variants, is hardcoded to not encrypt systems that use Russian or languages used by certain Russian allies.

But Callow said that doesn't mean whoever is behind the 49ers attack is in Russia or one of its neighbors.

“Anyone can use the malware to launch attacks," he said.


Do Samsung's Galaxy S22 and Tab S8 series have any Android competition? We discuss this on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement
Popular Mobile Brands
  1. Motorola Razr 60 Ultra, Edge 60 and Edge 60 Pro Price Leaked Online
  2. Vivo X200 Ultra Confirmed to Launch in April; Could Arrive With Vivo X200s
  3. Vivo T4 5G Set to Launch in India Soon; to Be Available on Flipkart
  4. Nothing Adds Camera Capture Feature to Phone 3a's Essential Space
  5. Tecno Camon 40 Series to Get 3 Years of OS, 5 Years of Security Updates
  6. Vivo Y300t With 6,500mAh Battery Confirmed to Launch on This Date
  7. Nothing Announces Phone 3a Community Edition Project
  8. Alibaba Qwen 2.5 VL AI Model Released; Now in a 32 Billion Parameter Size
  1. New Research Suggests Dark Energy Is Evolving, Challenging Cosmology Models
  2. Pulsar Fusion’s Nuclear Fusion Rockets May Revolutionise Space Travel
  3. 30,000-Year-Old Vulture Feathers Discovered, Uniquely Preserved in Volcanic Ash
  4. ISRO and IIT Madras Unveil Research Centre for Space Thermal Sciences
  5. Google X Introduces Taara Chip to Enable High-Speed Internet via Light Beams
  6. Supernova Remnants Found in Oceanic Samples, Scientists Look to Moon
  7. ESA’s Euclid Telescope Releases First Data, Mapping 26 Million Galaxies
  8. Alien Life May Survive on Planets Orbiting White Dwarfs, Study Finds
  9. NASA Reviews Boeing Starliner’s Future Amid Technical Challenges
  10. Anora Now Streaming on JioHotstar: Everything You Need to Know
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »