Casio Reports No Recovery Yet Post-Ransomware Attack

Table of Contents

Casio Computer Co., Ltd. recently shared troubling news about a ransomware attack that hit their network. In a news release, they confirmed that a third party illegally accessed their systems.1

If you’re a Casio customer or partner, you may want to stay updated on this situation, as it affects product orders and shipments.

Casio Faces Cyberattack

On October 5th, Casio Computer Co., Ltd. announced that a third party had illegally accessed its network. After looking into the situation, the company discovered that this unauthorized access led to a system failure. This failure caused some of their services to stop working. At first, Casio didn’t share many details about what happened, only mentioning that there was some “system disruption” throughout the company.

However, the Tokyo-based electronics company updated the public that they had been hit by a Ransomware attack. Ransomware is a type of malicious software that locks users out of their systems until a ransom is paid. During the breach, attackers also got access to information about some of Casio’s customers. 

As for who is behind this attack, Casio has not identified any specific individuals or groups. A Ransomware group known as Underground has claimed responsibility for the attack on their dark web leak site, which has been confirmed by TechCrunch.

What You Should Know About The Underground Ransomware Group

A report from Fortinet, released in late August 2024, says that Underground is a smaller Ransomware group that has been targeting Windows systems since July 2023. Microsoft has connected this group to a Russian cybercrime gang called Storm-0978, which is also known as “RomCom” because of the malware they use.

If you’re a Casio customer, it’s understandable to be concerned about this situation. Keeping your personal information secure is important, so it might be a good time to check your accounts for any unusual activity and to stay abreast of any updates from the company.

Casio Takes Action After Data Leak

In a statement, after discovering the data breach, Casio reached out to the police on October 6 and contacted the Personal Information Protection Commission on October 7. 

By October 9, they officially reported the issue. As of October 11, they found out that some personal information may have been leaked. This includes:

  • Personal information of employees, including temporary and contract workers.
  • Some personal details of employees from affiliated companies.
  • Information from business partners of Casio and its affiliated companies.
  • Personal details of individuals who have applied for jobs with Casio in the past.
  • Information about certain customers who use services from Casio and its partners.

Casio reassured its customers that credit card information wasn’t compromised. They confirmed that their Casio ID and ClassPad services were not impacted by this breach.

Casio Struggles To Recover From Ransomware Attack

As told to TechCrunch, Casio has confirmed that many of its systems are still down nearly two weeks after a Ransomware attack. Ayuko Hara, a spokesperson for the company, said that they have “no prospect of recovery yet.” 

To limit the damage, Casio disconnected their servers. Unfortunately, this is affecting their ability to take and manage orders from suppliers and schedule product shipments. Hara emphasized that while recovery is challenging, they are focusing on supporting their customers during this time.

Right now, these shipping issues mainly impact customers in Japan. Some of them are seeing a message that says, “Due to a problem with our product shipping system, the shipping date is currently undecided.” However, Casio’s website in the U.S. seems to be unaffected. 

According to the company, the Ransomware attack compromised sensitive company data and personal information belonging to employees, contractors, business partners, and job applicants. If you’re waiting on a shipment from Casio, stay tuned for updates as they work to resolve these issues.

It’s critical for your organization to be Ransomware-ready to protect your data and systems. Learn helpful tips from our webinar on how to prepare for, prevent, and stop these cyber threats!

FAQ

What Happens If You Are Attacked By Ransomware?

If you are attacked by Ransomware, your files may get encrypted, and you won’t be able to access them until you pay a ransom. It can disrupt your work and put your personal information at risk. It’s important to report the attack to relevant authorities (such as the FBI’s Internet Crime Complaint Center) and seek help to recover your data and improve your security.

Is It Possible To Remove Ransomware?

Yes, it is possible to remove ransomware, but it can be very challenging. For example, the 2Secure team often handles these attacks, like when Phobos Ransomware hit a jewelry business. They faced huge costs, including money paid to attackers and wages for 71 days while their business was shut down. To prevent such attacks, using endpoint protection, running Ransomware attack simulations, and conducting penetration testing can be very helpful.

Source:

  1. 当社ネットワークへの不正アクセスによるシステム障害について | CASIO. (2024). CASIO公式ウェブサイト. https://www.casio.co.jp/release/2024/1008-incident/
Share this article with a friend

Related Posts

How Cybersecurity Empowers In A Competitive & Globalized Market

How Cybersecurity Empowers In A Competitive & Globalized Market

Today’s fast-paced world finds businesses facing tough competition and operating across borders. To succeed, you need more than great products…
SEC Cyber Incident Rule Reports 71 Filings In 11 Months

SEC Cyber Incident Rule Reports 71 Filings In 11 Months

How often do Cyberattacks happen to big companies? A recent report shows the number of filings the Securities and Exchange…
Snowflake To End Single-Factor Authentication By 2025

Snowflake To End Single-Factor Authentication By 2025

You’ve likely heard of Snowflake, the popular cloud data platform. The company recently announced that it will be phasing out…

Sign Up for Your Free 30-Day SoC Trial Today!

We Are Now Offering Our 24/7 SoC Service With a Risk-Free 30-Day Trial—No Commitments Required.

Hurry! Limited Slots Available for This Exclusive Trial.

Ground Rules

  1. 🏢 Minimum Company Size: Must have at least 25 employees.
  2. 💻 Endpoints Limit: Trial is limited to a specific number of endpoints.
  3. One Trial Per Company: You can’t trial more than once.

What You’ll Get During the Trial

  1. 🎁 $150 Amazon Gift Card: Just for signing up.
  2. 👩‍💻 24/7 SoC Team: Our experts monitoring your environment so you can sleep easy.
  3. 🔍 Threat Hunting: Uncover existing threats hiding in your network.
  4. ⚠️ Active Threat Detection:
    • Detect unknown active threats.
    • Detect known active threats.
  5. 🔧 Missing Patch Identification: Stay on top of vulnerabilities caused by unpatched systems.
  6. Free Internal Vulnerability Assessment:
    At the end of your trial, you’ll receive a complimentary assessment to know exactly where you stand.

Test Drive 2Secure

Create an account to access this functionality.
Discover the advantages