ao link
Affino
Search Teiss
My Account
Remember Login
My Account
Remember Login

BlackCat ransomware group claims major cyber attack on Reddit; threatens to leak stolen data

The infamous BlackCat (ALPHV) ransomware gang has claimed responsibility for a significant cyber attack Reddit suffered earlier this year and has threatened to leak the stolen files.Earlier this year, social news aggregator Reddit said that it became aware of a security incident on 5th February. It said the incident occurred a result of a “sophisticated phishing campaign that targeted Reddit employees” which resulted in an employee falling victim to the trap.“As in most phishing campaigns, the attacker sent out plausible-sounding prompts pointing employees to a website that cloned the behaviour of our intranet gateway, in an attempt to steal credentials and second-factor tokens,” Reddit www.reddit.com/r/reddit/comments/10y427y/we_had_a_security_incident_heres_what_we_know/" target="_blank" rel="noopener noreferrer" data-auth="NotApplicable" data-linkindex="2">said.After the threat actor successfully obtained the employee’s credentials, they gained access to the company’s internal systems, internal documents, and code, as well as some internal dashboards and business systems.The hacker also accessed contact information for company contacts and employees (former and current) and some advertiser information. Reddit clarified that there is no indication that its primary production systems were breached.“Based on several days of initial investigation by security, engineering, and data science (and friends!), we have no evidence to suggest that any of your non-public data has been accessed, or that Reddit’s information has been published or distributed online,” Reddit said.According to security researcher Dominic Alvieri, the BlackCat (ALPHV) ransomware gang has claimed responsibility for the cyber attack on Reddit and is now threatening to leak the stolen files. 

 
 
The ransomware group claimed on its data leak site that it contacted Reddit twice - once on 13th April and again on 16th June - and demanded a ransom of $4.5 million for the data to be removed. The group, however, did not receive a response from the company.The BlackCat group, which claims to be in possession of 80GB of data stolen from Reddit, is now willing to publish the stolen data unless the company meets its ransom demand.“I told them in my first email that I would wait for their IPO to come along. But this seems like the perfect opportunity! We are very confident that Reddit will not pay any money for their data," the group said.
 
“But I am very happy to know that the public will be able to read about all the statistics they track about their users and all the interesting confidential data we took. Did you know they also silently censor users? Along with artifacts from their GitHub!”Reddit is yet to comment on the claims of the ransomware gang. The company has, however, said that it has been working hard to enhance the security of its internal network and avoid such incidents in the future.“We’re continuing to investigate and monitor the situation closely and working with our employees to fortify our security skills.“Our goal is to fully understand and prevent future incidents of this nature, and we will use this post to provide any additional updates as we learn and can share more,” Reddit added.

Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Affino

Winston House, 3rd Floor, Units 306-309, 2-4 Dollis Park, London, N3 1HF

23-29 Hendon Lane, London, N3 1RT

020 8349 4363

© 2025, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543