Tipalti, a leading provider of accounting and payment solutions, has confirmed that it is investigating claims by a ransomware group that they breached its network and stole 256 GB of data, including data from some of its high-profile customers.
The ransomware group, known as ALPHV, posted a message on its dark web leak site on Saturday, claiming that they had compromised Tipalti’s systems and exfiltrated sensitive data. The group also shared screenshots of some of the files they allegedly obtained, including customer information, invoices, contracts, and financial reports.
Among the customers whose data was allegedly exposed were Twitch, Roblox, ZipRecruiter, Roku, GoDaddy, Canva, and X. These are some of the well-known companies that use Tipalti’s technology to automate their accounting, payment processing, eCommerce, and affiliate and influencer programs.
Tipalti told BleepingComputer in a statement that it was aware of the ransomware group’s claims and was conducting a thorough investigation.
“Over the past weekend, a ransomware group claimed that they allegedly gained access to confidential information belonging to Tipalti and its customers,” Tipalti said. “Tipalti takes the security of our systems and data very seriously and has strong security protocols and tools in place. We are thoroughly investigating this claim.”
Tipalti added that it was committed to protecting its customers’ data and implemented multiple layers of security measures to prevent and detect cyberattacks.
They advised its customers to contact its support team if they had any questions or concerns about the ransomware group’s claims.
ALPHV (aka BlackCat) is a relatively new ransomware group that emerged in October 2021. The group operates a double-extortion scheme, where it encrypts the victim’s files, demands a ransom for their decryption, and threatens to publish or sell the stolen data if the ransom is not paid. The group claims to have targeted several other companies in various sectors, such as healthcare, education, manufacturing, and retail.
Keep in touch with our blog to read the latest news and innovations in the cybersecurity world.
Facebook: Eagle Tech Corp
Instagram: @eagletech_corp
Twitter: @eagletechcorp
LinkedIn: Eagle Tech
YouTube: Eagle Tech Corp