Description

Tipalti, a technology solutions provider specializing in accounting, payment processing, eCommerce, and affiliate programs, is currently investigating claims made by the ALPHV ransomware gang regarding a security breach. The ransomware group asserts that they successfully infiltrated Tipalti's network, accessing 256 GB of data, including information related to prominent clients such as Twitch and Roblox. Tipalti, with a clientele that includes well-known companies like ZipRecruiter, Roku, GoDaddy, and Canva, has emphasized its commitment to the security of its systems and data, assuring that a thorough investigation is underway. The ALPHV ransomware gang, also known as BlackCat, disclosed on their data leak site that they have maintained undetected access to Tipalti's systems since September 8th. The stolen data, amounting to 265 GB, is claimed to include confidential business information, employee details, and client data. Unusually, the ransomware group has named its intended victims before initiating the extortion process, asserting that Tipalti's cyber insurance doesn't cover extortion, and they believe the company will not comply with ransom demands. Roblox, one of Tipalti's clients, is collaborating with the technology solutions provider to investigate the alleged data breach. The ALPHV ransomware gang, in a surprising move, has stated their intention to contact Tipalti's customers individually for extortion purposes. The threat actors have specifically mentioned having gained access to data for Twitch and Roblox, heightening concerns about potential impacts on these platforms. The unfolding situation underscores the increasing sophistication and audacity of cybercriminals, as they employ unconventional tactics in their ransomware campaigns.