Finalsite’s problems began Tuesday, and the company said it’s still working to restore full functionality.

Correction: In a phone call, Finalsite said 5,000 schools were affected, not 5,000 school districts.

Around 5,000 school websites were reportedly made inaccessible this week following a ransomware attack on the company hosting those websites. Three days later, the company is still trying to restore full functionality.

“On Tuesday, January 4th, our team detected the presence of ransomware on certain systems in our environment.” Finalsite said on a status update page Thursday. “We immediately took action to secure our systems and contain the activity.”

Finalsite said it had launched an investigation using third-party forensic specialists. It said there was no evidence Finalsite or customer data was stolen.

“This incident was not directed against specific schools, but against the Finalsite database as a whole,” Finalsite said in a statement, “The data contained on these websites is limited to demographic characteristics (name, e-mail address).”

Finalsite said it doesn’t store any personal information, such as school records, credit card information, or social security numbers.

Company spokesman Morgan Delack said 5,000 of the company’s 8,000 customers were affected. Finalsite serves school districts as well as individual customers, including charter and international schools. A list of affected schools was not available.

A Reddit user claimed Thursday that the outage prevented some schools from sending out alerts about school closures or COVID-19 protocols.

Delack said she couldn’t provide any details on how the ransomware got into Finalsite’s system as the investigation is still ongoing.

Former FBI analyst Crane Hassold, now director of threat intelligence at Abnormal Security, said ZDNet that this attack was similar to last year’s on Kaseya, noting the trickle-down effect that ransomware can have.

“When a company that provides solutions to other companies is hit by ransomware, similar to what we saw with Kaseya last summer, the resulting impact can be exponentially devastating,” Hassold said.

Finalsite is based in Glastonbury, Connecticut with offices in the United Kingdom. The school districts it serves include Kansas City, Tacoma, Washington, and Avon Grove, Pa.

Source link
#Ransomware #takes #school #websites

Leave a Reply