从2025年5月开始,内华达州系统对赎金软件的攻击中断了关键服务几个星期后才被控制。
A Nevada state systems ransomware attack, starting in May 2025, disrupted key services for weeks before being contained.
2025年5月,一名雇员下载了伪装成系统工具的恶意软件,数月未被发现,扰乱了驾驶执照发放和背景调查等关键服务。 2025年5月,内华达州系统遭到勒索软件袭击。
A ransomware attack on Nevada’s state systems, starting in May 2025 when an employee downloaded malware disguised as a system tool, went undetected for months, disrupting key services like driver’s license issuance and background checks.
这一违反规定的行为利用了一个虚伪的网站和欺诈广告,允许攻击者进入密码保险库并折中26个账户,尽管没有泄露任何数据。
The breach, which exploited a spoofed website and fraudulent ads, allowed attackers to access a password vault and compromise 26 accounts, though no data was leaked.
该州避免支付赎金,在Dell和Microsoft的帮助下收回了90%的数据,并至少花费150万美元用于恢复,包括130万美元用于网络保险。
The state avoided paying a ransom, recovered 90% of data with help from Dell and Microsoft, and spent at least $1.5 million on recovery, including $1.3 million in cyber insurance.
官员们在28天内将恢复服务的工作归功于强有力的规划和信息技术工作人员。
Officials credited strong planning and IT staff for restoring services in 28 days.
这一事件促使人们呼吁建立一个中央安保行动中心和更好地发现威胁,专家们指出,这些措施本应是标准的。
The incident prompted calls for a centralized security operations center and better threat detection, with experts noting such measures should have been standard.
袭击者身份仍然不明。
The attacker remains unidentified.