Accenture, the global IT consulting firm with a Top 250 MSSP business unit, briefly described a data breach in an SEC filing, and said the incident had no material impact on Accenture or customer operations.
Accenture's 10-K filing, dated October 15, 2021, stated:
"For example, as previously reported, during the fourth quarter of fiscal 2021, we identified irregular activity in one of our environments, which included the extraction of proprietary information by a third party, some of which was made available to the public by the third party. In addition, our clients have experienced, and may in the future experience, breaches of systems and cloud-based services enabled by or provided by us. To date these incidents have not had a material impact on our or our clients’ operations; however, there is no assurance that such impacts will not be material in the future, and such incidents have in the past and may in the future have the impacts discussed below."
The additional information, on page 15 of the filing, outlines a range of common cybersecurity and data risks that face companies such as Accenture.
BleepingComputer claims that the Accenture filing confirmed a LockBit ransomware attack against the IT consulting firm. But MSSP Alert did not see a LockBit mention in the SEC filing (did we miss something?).
The LockBit ransomware gang claimed to have stolen six terabytes of data from Accenture's network and demanded a $50 million ransom, BleepingComputer added.
How MSPs and MSSPs Can Prevent Ransomware Attacks
Cyberattacks against IT service providers and their down-stream customers represent a "revolutionary change" in nation-state tactics, Microsoft said in a recent report.
In particular, attacks on IT service providers is part of a wider net Russia is casting that has seen Moscow-supported threat actors successfully execute cyber attacks at an alarming rate, Microsoft said in its Digital Defense Report.
To mitigate the risk of ransomware attacks, the FBI and CISA say MSSPs and MSPs should take these seven steps:
How MSPs and MSSPs Can Respond to and Recover From Ransomware Attacks
If a ransomware incident occurs, then the CISA, FBI and NSA recommend the following four actions: