Harita Group hit by MalaLocker ransomware

Year

2023

Month

June

Reference number

20230612

Impact area

Shore

Incident location

Indonesia

Incident country

Indonesia

Victim country

Indonesia

Victim identity

Harita Group

Victim Type

Shipping

Method

Ransomware

Attacker country

Uknown

Summary:

In 2023 Indonesia’s Harita Group, a prominent player in the manufacturing sector, was subjected to a ransomware attack by the lesser-known MalaLocker group. Though the origins of MalaLocker are unknown, their attack demonstrated the growing trend of ransomware actors targeting manufacturing firms, where downtime can directly translate into financial losses and supply chain disruptions. The attack, which targeted Zimbra servers, resulted in the leak of 99,000 emails totaling 510 GB, revealing sensitive information about the company's nickel and bauxite mining operations, coal activities, and partnerships, including with Glencore International. The incident not only disrupted Harita’s operations but also highlighted broader concerns about environmental and corporate practices in Indonesia's resource sectors.

Reference URL

https://static1.squarespace.com/static/5fae4682cc2b52123f436f99/t/6614e6a60fbde93c9dfdc4e3/1712645824622/Norma+Cyber+Annual+Threat+Assessment+-+Spreads.pdf
https://cyberscoop.com/ransomware-charity-malaslocker/

https://ddosecrets.com/article/harita-group