DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Ca: Community Care discloses ransomware incident

Posted on July 11, 2017 by Dissent

I must admit that I am pleasantly surprised to read how this non-profit had a great response to a ransomware attack.

Community Care of St. Catharines and Thorold is still reeling from a cyberattack that shut its computers down for more than a week.

The local food bank’s CEO, Betty-Lou Souter, said Community Care’s systems are back up and running, but the ransomware attack has reinforced the need for cyber-vigilance.

“It is easy to open the door, but once it’s open it can be very hard to close,” Souter said.

She said Community Care’s servers were attacked by the NW4 ransomware virus at 11:26 p.m. on June 28.

No one is sure how the virus got into the server, but when Community Care’s staff arrived for work on June 29, they couldn’t use their computers.

Souter said every computer screen displayed a message that said all the computer’s files were encrypted. To get access to them, Community Care would have to buy an encryption key for the price of $3,000 in Bitcoin, a unit of currency frequently used by cybercriminals.

“We didn’t pay that, obviously,” Souter said. “I immediately called our technical support guy, and he told us not to touch anything.”

But it wasn’t just their immediate response that impressed me. It was their preparation:

She said Community Care backs up its computer files on a regular basis. The technician wiped the computers and restored them using those backed up files.

Souter said Community Care’s client information files were unaffected because they are not stored on the physical server, but on a cloud.

Nevertheless, it took nearly a week for Community Care to have full access to its computers. The only data lost was information that hadn’t been captured in the most recent backup.

I wonder what their budget is for infosecurity and whether they would be willing to share their plan with others of comparable size and means.

Read more on St. Catherines Standard.

Category: Breach IncidentsMalwareMiscellaneousNon-U.S.

Post navigation

← OR: Prineville woman charged in St. Charles Bend data breach
University of Iowa Health Care notifies 5,292 patients about files exposed online for two years →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Resource: State Data Breach Notification Laws – June 2025
  • WestJet investigates cyberattack disrupting internal systems
  • Plastic surgeons often store nude photos of patients with their identity information. When would we call that “negligent?”
  • India: Servers of two city hospitals hacked; police register FIR
  • Ph: Coop Hospital confirms probe into reported cyberattack
  • Slapped wrists for Financial Conduct Authority staff who emailed work data home
  • School Districts Unaware BoardDocs Software Published Their Private Files
  • A guilty plea in the PowerSchool case still leaves unanswered questions
  • Brussels Parliament hit by cyber-attack
  • Sweden under cyberattack: Prime minister sounds the alarm

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Vermont signs Kids Code into law, faces legal challenges
  • Data Categories and Surveillance Pricing: Ferguson’s Nuanced Approach to Privacy Innovation
  • Anne Wojcicki Wins Bidding for 23andMe
  • Would you — or wouldn’t you?
  • New York passes a bill to prevent AI-fueled disasters
  • Synthetic Data and the Illusion of Privacy: Legal Risks of Using De-Identified AI Training Sets
  • States sue to block the sale of genetic data collected by DNA testing company 23andMe

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.