Incident

Iranian IT vendor Tosan allegedly paying ransom to resolve cyberattack


Learn More

An Iranian IT vendor, Tosan, which provides services to 45% of Iran's banks and government entities, is reportedly paying a ransom in installments to resolve a recent cyberattack, contrary to Iranian government claims that no such attack occurred.

The hacking actor "ireaks" claimed responsibility for the attack, threatening to sell the data if a deal was not reached. The stolen data includes detailed customer information as:

  • names,
  • account numbers,
  • addresses,
  • transaction details

The data is stolen from at least 20 of Iran’s 29 active credit institutions. No details are disclosed about the number of affected individuals.

Tosan is paying 35 bitcoin in installments to the hackers, with approximately 10 bitcoin (worth around $561,000) paid so far. The payments have been tracked to wallets associated with Iranian exchanges.

Iranian IT vendor Tosan allegedly paying ransom to resolve cyberattack