HomeNewsMajor Ransomware Attacks in Peru and Costa Rica Spell More Trouble for Region
NEWS

Major Ransomware Attacks in Peru and Costa Rica Spell More Trouble for Region

COSTA RICA / 3 MAY 2022 BY SCOTT MISTLER-FERGUSON EN

A cybercrime group that has threatened to release troves of stolen data from the Costa Rican government has now hit Peru's intelligence agency, showing how governments in the region continue to be easy pickings for ransomware attacks.

The Russian cybercrime group known as Conti announced on April 27 that it had hacked the website of Peru’s National Directorate of Intelligence, local media outlet La República reported. The group has threatened to publish stolen data, which it claims is sensitive, if the government did not pay a ransom.

Just two days later, Conti renewed its pressure on Costa Rica's government. The group said it planned to move onto the “second stage” of its attack and publish the 46 gigabytes of information it stole from the country's finance and labor ministries, as well as other government agencies. The group also warned that the private sector would also be targeted if it did not receive $10 million, reported El Observador. Costa Rica has thus far refused to pay.

SEE ALSO: Latin America Under Threat of Cybercrime Amid Coronavirus

Conti, nicknamed after the software it uses, is considered the largest ransomware gang in the world. The group specializes in so-called big game hunting, which involves selecting high-value institutions for greater payouts and notoriety. In 2021, the group pulled off more than 500 ransomware attacks, according to SC Media, a specialized cybersecurity news outlet.

InSight Crime Analysis

The escalation of cyberattacks on Latin American governments has become increasingly apparent in recent years. Costa Rica and Peru are just the latest targets in a region where institutions lack the resources or capabilities to defend their critical digital infrastructure.

For example, in the Peru attack, Conti's message to the National Directorate of Intelligence specifically noted that there was no data encryption on the network. 

The year 2021 saw an explosion of ransomware attacks in the region. As reported by InSight Crime, in December Brazil’s Ministry of Health was hacked by the cybercrime gang, Lapsus$. Platforms affected included those that tracked COVID-19 vaccinations. Brazil has also suffered 13 separate cyberattacks on its court system in the past 18 months, according to Consultor Jurídico.

In October, information on Argentina's entire population of 44 million was allegedly stolen after the country's National Registry of Persons (Registro Nacional de las Personas - RENAPER) was infiltrated.

In Chile, a customs agency in Valparaíso was similarly infiltrated by the ransomware group Prometheus, which specializes in Latin American targets.

According to digital threat protection platform AdvIntel, a lack of technical expertise and cybercrime legislation are at the root of Latin America's digital vulnerabilities. An Inter-American Development Bank report appears to support this conclusion. At the beginning of 2020, just 12 of the 33 countries in the region had an approved national cybersecurity strategy. 

Steph Shample, a cybersecurity expert and fellow at the Middle East Institute, explained to InSight Crime that Conti is extremely well-organized and careful in selecting targets from which to steal troves of sensitive data.

SEE ALSO: Latin American Governments Easy Prey for Ransomware During COVID-19

According to Shample, the group uses malware like Trickbot and Emotet for initial access to an organization. Defending against such attacks is complicated by human error. When just one employee clicks on a malicious link, an organization's entire critical infrastructure can be compromised.

"They'll get additional credentials. They can read private emails, and read private chats in any company. It only takes one vulnerability and then everything is out there."

share icon icon icon

Was this content helpful?

We want to sustain Latin America’s largest organized crime database, but in order to do so, we need resources.

DONATE

What are your thoughts? Click here to send InSight Crime your comments.

We encourage readers to copy and distribute our work for non-commercial purposes, with attribution to InSight Crime in the byline and links to the original at both the top and bottom of the article. Check the Creative Commons website for more details of how to share our work, and please send us an email if you use an article.

Was this content helpful?

We want to sustain Latin America’s largest organized crime database, but in order to do so, we need resources.

DONATE

Related Content

CONTRABAND / 3 NOV 2020

A sizeable seizure of adulterated rum shipped to Honduras from Europe reveals the extent to which black markets for alcohol…

CYBERCRIME / 31 JAN 2022

Scammers in Venezuela are selling desperate people non-existent government food aid packages – in the latest episode of the handout…

ARMS TRAFFICKING / 12 OCT 2021

Arms trafficking in Mexico has turned to digital mediums that offer both broad visibility and anonymity to an ever-increasing flow…

About InSight Crime

LA ORGANIZACIÓN

Extensive Coverage of our Chronicles of a Cartel Bodyguard

23 SEP 2022

Our recent investigation, A Cartel Bodyguard in Mexico’s 'Hot Land', has received extensive media coverage.

THE ORGANIZATION

InSight Crime, American University Host Illegal Fishing Panel

19 SEP 2022

InSight Crime and the Center for Latin American & Latino Studies (CLALS) at American University discussed the findings of a joint investigation on IUU fishing at a September 9 conference.

THE ORGANIZATION

Impact on the Media Landscape

9 SEP 2022

InSight Crime’s first investigation on the Dominican Republic made an immediate impact on the Dominican media landscape, with major news outlets republishing and reprinting our findings, including in …

THE ORGANIZATION

InSight Crime Sharpens Its Skills

2 SEP 2022

Last week, the InSight Crime team gathered for our annual retreat in Colombia, where we discussed our vision and strategy for the next 12 months.  During the week, we also learned how to…

THE ORGANIZATION

Colombia’s Fragile Path to Peace Begins to Take Shape

26 AUG 2022

InSight Crime is charting the progress of President Gustavo Petro’s agenda as he looks to revolutionize Colombia’s security policy, opening dialogue with guerrillas, reforming the military and police, and…