• Hello and welcome! Register to enjoy full access and benefits:

    • Advertise in the Marketplace section for free.
    • Get more visibility with a signature link.
    • Company/website listings.
    • Ask & answer queries.
    • Much more...

    Register here or log in if you're already a member.

  • 🎉 WHV has crossed 14,000 monthly views and 157,000 clicks per month, as per Google Analytics! Thank you for your support! 🎉

Maryland Transit Administration Breach: Rhysida Ransomware Gang Demands $3.4 Million Ransom

johny899

New Member
Content Writer
Messages
421
Reaction score
3
Points
23
Balance
$462.6USD
Here's what happened: the Rhysida ransomware group claims that they breached the Maryland Transit Administration (MTA) in late August and took a lot of confidential information from the agency. Now they are demanding 30 Bitcoin, about $3.4 million in total, for the return of the information. Wild, right?

What Was Taken?​

According to the group, the following was taken:

  • Names birthdays
  • Driver's licenses
  • Social Security numbers
  • Passports, and identification documents
As proof, the group posted images of the driver's licenses and passports. They told MTA they have seven days to pay.

The MTA commented there was a cyber incident, but they have neither confirmed whether everything Rhysida claims is true or not, at least, from the information available right now. They are still trying to determine what data was stolen and how many people are affected. They did say:

  • "If there was a leak, they will work to notify them and provide some advice."
  • Some services were impacted, including MobilityLink paratransit and some of the real-time bus tracking system.
For now we are waiting.

Who Are These Rhysida Guys?​

Rhysida has been active. Here is their activity history:

  • 91 confirmed attacks to date with a leak of approximately 5.5 million records.
  • Their average ransom has been approximately $1.1 million.
  • This $3.4 million demand is one of their largest ever–just behind $5.8 million at Port of Seattle.
  • They previously demanded the same amount from the Lurie Children’s Hospital.
It is apparent they like to attack significant targets where the pressure is greatest.

Why Should You Care?​

You might think: "I don't live in Maryland, so why does this matter?" Here is the deal you need to understand:

  • If this information is accurate, there is a risk of identity theft for individuals.
  • Transit riders still face service issues—some transit bus tracking is still down.
  • Other hackers may take this as a 'green light' to target multiple public agencies.
  • Phishing scams (fake emails and texts directly sent) have a tendency to escalate following a breach.
If I lived in Maryland, I would already be evaluating my credit reports, changing my passwords, and enabling two-factor login.

What Follows?​

The main questions are:

• Will the MTA actually pay the ransom?

• How many individuals’ information was really breached?

• Can everyone impacted be notified promptly?

• Can MTA reinstate its all its services accessible online as soon as possible?

Conclusion​

This is not just about Maryland, itself, it says more about public systems globally. If hackers can wreak havoc on a state transit authority, they can wreak havoc almost anywhere.

If you ride the transit, use online services, or live in a digital world (that’s all of us!), the significance of this story has a bearing on you. Stay alert, guard your information, and probably more significant, don’t trust every email or message sent to you!