Sergiu Gatlan reports:
The operators behind Sodinokibi Ransomware published download links to files containing what they claim is financial and work documents, as well as customers’ personal data stolen from giant U.S. fashion house Kenneth Cole Productions.
Sodinokibi (aka REvil) is a Ransomware-as-a-Service operation where the operators manage development of the ransomware and the payment portal used by victims to pay the ransoms, while third-party ‘affiliates’ are in the business of distributing the ransomware to the targets’ systems.
Read more on BleepingComputer.
The alleged attack was first noted by @UndertheBreach on Twitter:
REvil Ransomware group just dumped the files of American fashion house, Kenneth Cole. (@kennethcole)
-Provided a download link with some information about employees and financial information.
-Claiming to have 60,000 personal data and 70,000 financial and work documents. pic.twitter.com/owmE2CdNPL
— Under the Breach (@underthebreach) February 27, 2020