Western Digital, a prominent data storage company, falls victim to a cyberattack resulting in the theft of approximately 10 TB of data, including customer information. Hackers are demanding a significant ransom, reportedly in the “minimum 8 figures,” to prevent the exposure of the stolen data online. Additionally, the hackers have allegedly shared phone numbers belonging to several company executives and were able to steal data from the company’s SAP Backoffice, which manages e-commerce data.
In an email sent to Western Digital executives, the hackers stated-“We are the vermin who breached your company. Perhaps your attention is needed! Continue down this path and we will retaliate. We only need a one-time payment, and then we will leave your network and let you know about your weaknesses. No lasting harm has been done. But if there are any efforts to interfere with us, our systems, or anything else. We will strike back.”
Western Digital disclosed on April 3 that data was exfiltrated from its systems during a “network security incident.” The incident was initially identified on March 26, when an unauthorized third party gained access to several of the company’s systems. Western Digital promptly responded by implementing mitigation measures and initiating an investigation with the help of external security and forensic experts. The company is currently focused on restoring impacted infrastructure and services as part of its remediation efforts.


