Both CloudNordic and Azero said that they were working to rebuild customers’ web and email systems from scratch, albeit without their data.

Yea… Don’t bother. But, do expect to hear from my lawyers…

CloudNordic said that it “had no knowledge that there was an infection.” CloudNordic and Azero are owned by Denmark-registered Certiqa Holding, which also owns Netquest, a provider of threat intelligence for telcos and governments.

Edit-

https://www.cloudnordic.com/

    • HTTP_404_NotFoundOP
      link
      fedilink
      English
      132 years ago

      yea, that was my thoughts as well… Lol, I wouldn’t touch them with a 10 foot pole.

  • beaubbe
    link
    fedilink
    English
    352 years ago

    Crazy that an admin had full access to all files on all drives including backups without requiring any kind of elevation, where a ransomware could encrypt it all.

    At this point 8 don’t even know if paying would be the way to go to at lease rexover the files and rethink their security from the ground-up.

    • HTTP_404_NotFoundOP
      link
      fedilink
      English
      182 years ago

      rethink their security from the ground-up.

      After reading the post, I don’t think they did any thinking at all for their security… or redundancies, access controls… etc…

  • TimeSquirrel
    link
    fedilink
    292 years ago

    How do you fuck up this badly in 2023? I can see this happening in 1999.

    • @HellAwaits@lemm.ee
      link
      fedilink
      English
      92 years ago

      Ransomware attacks aren’t new. Although, I find it weird that a cloud host doesn’t have backups.

      • On
        link
        fedilink
        22
        edit-2
        2 years ago

        CloudNordic said: “The attackers succeeded in encrypting all servers’ disks, as well as on the primary and secondary backup system, whereby all machines crashed and we lost access to all data

        They did. They were affected too, if you read the article.

        • @exi@feddit.de
          link
          fedilink
          English
          102 years ago

          If your backups are online and not in a warehouse, you are doing it wrong. Even my own personal backups are on disconnected disks. What a bunch of amateurs.

          • @GenEcon@lemm.ee
            link
            fedilink
            English
            62 years ago

            If you don’t know you are infected and you’ve been infected for a couple months, your backups are worthless.

            • @exi@feddit.de
              link
              fedilink
              English
              5
              edit-2
              2 years ago

              That’s why you do regular restore tests on separate systems. That should be standard procedure for any company. A fully encrypted disk should be noticable immediately.

  • @demonsword@lemmy.world
    link
    fedilink
    English
    272 years ago

    Danish cloud host says customers ‘lost all data’ after ransomware attack

    I’d hazard that that Danish cloud host probably lost all customers after that happened too

    • HTTP_404_NotFoundOP
      link
      fedilink
      English
      322 years ago

      If, I were a customer- I would be leaving for sure.

      When- you pay a cloud vendor, you are generally paying to ensure a few things…

      1. That this stuff doesn’t happen.
      2. That when this type of stuff does happen, they have a recovery plan / working backups.

      And, when this hit the news, and I discovered they are owned by a company with a stake in cyber-security, I’d be jumping to a replacement pretty quickly… and staying far away from this company.

  • Jeena
    link
    fedilink
    English
    142 years ago

    Hm, so I can’t rely on the Hetzner backup and should backup manually to a hard drive at home at least every now and then.

    • r00ty
      link
      fedilink
      102 years ago

      The fire ovh had created this problem for many. Some people’s backups were in that data centre and they lost everything.

      Yes, home backup and or cloud backup with a separate provider.

  • TwoGems
    link
    fedilink
    English
    82 years ago

    So what is the safest encrypted cloud service these days?

    • HTTP_404_NotFoundOP
      link
      fedilink
      English
      222 years ago

      safest encrypted cloud service these days

      None. Use your own encryption keys, and pre-encrypt your data.

      If the cloud provider I use for storing my backups got pwned, the attacker would gain access to… well, nothing, without my private keys. And- if you follow the 3.2.1. rule, you would lose nothing, because you have at least two other copies.

  • @OfficerBribe@lemm.ee
    link
    fedilink
    English
    62 years ago

    Ouch, cannot imagine what everyone, who are involved in this, are thinking. Wonder how many customers they had and how many will go broke.

  • Campa
    link
    fedilink
    English
    22 years ago

    Keeping data in one place would only result in misuse of data and data leaks.

    • KairuByte
      link
      fedilink
      English
      82 years ago

      Seed boxes are inherently handling replaceable data, bar unpopular torrents. This is such a silly comparison.