Rectron network offline for days and won't say if it was caused by a cyberattack

They're sticking to their guns about suffering "an incident," but from a comms perspective, I can tell you guys that Rectron is very secluded and doesn't do much media/answer a lot of queries.

But closing down all of your offices seems like an unprecedented reaction to a ransomware attack, if it is that.
 
from a comms perspective, I can tell you guys that Rectron is very secluded
Staff at nearly all levels were told not to talk to a soul outside of Rectron.

But closing down all of your offices seems like an unprecedented reaction to a ransomware attack, if it is that.
If it is a ransomware attack, it might be as simple as the staff literally can't work due to the DB being encrypted and have no reason to be there. It could also be that it hasn't affected the entire network and they want to keep it contained. Tell someone to sit and their desk and not touch their PC and see how long it takes for boredom to result in them switching it on...
 
Staff at nearly all levels were told not to talk to a soul outside of Rectron.


If it is a ransomware attack, it might be as simple as the staff literally can't work due to the DB being encrypted and have no reason to be there. It could also be that it hasn't affected the entire network and they want to keep it contained. Tell someone to sit and their desk and not touch their PC and see how long it takes for boredom to result in them switching it on...
Surely a company that sells ransomware protection services, such as backup platforms, has these systems in place for its own operations?
 
Surely a company that sells ransomware protection services, such as backup platforms, has these systems in place for its own operations?
No comment :ROFL:

As I said previously, everything is speculation at this point. Staff (even at fairly high levels) are being kept in the dark. Nothing really makes sense - regardless of what situation you envision, the way it's being handled doesn't add up.
 
Actually I have a different theory which aligns with a cyberattack. Maybe they need to collect evidence, and reverting to a backup would destroy said evidence? Perhaps an external incident response team that has insisted nobody touches anything?

And then that leads me to a theory as to why they're quiet. Admitting to a ransomware (or similar) attack without first understanding the scope of said attack may lead to legal implications? Isn't that why companies normally admit to breaches months down the line, rather than at the time of discovery?

Maybe I'm reading between the lines, but the focus on "security reasons" implies they're worried about staff interacting with anything, rather than systems just being online.

I'm out of my scope here, but who would realistically be informed of a ransomware attack? Probably the CEO, legal, anyone directly involved in an investigation (like an incident response team), and that's about it?
 
They're sticking to their guns about suffering "an incident," but from a comms perspective, I can tell you guys that Rectron is very secluded and doesn't do much media/answer a lot of queries.

But closing down all of your offices seems like an unprecedented reaction to a ransomware attack, if it is that.
1784703672036.png

last night i got this.

i know my guy that side isnt happy they not making targets. I would to if i was in sales that side. i had to mark their stock to zero and feed turned off otherwise im going to have a big back end of orders from clients and possible issues. but if you are looking for something ask me i send the request they back on we then can place. its going to be a mess when they are back on they got a lot of catching up to do
Staff at nearly all levels were told not to talk to a soul outside of Rectron.


If it is a ransomware attack, it might be as simple as the staff literally can't work due to the DB being encrypted and have no reason to be there. It could also be that it hasn't affected the entire network and they want to keep it contained. Tell someone to sit and their desk and not touch their PC and see how long it takes for boredom to result in them switching it on...
as far as i know they just cant access studio their mails are working tho (auto responses are active and confirmed they getting my mails).

so to me does seem like a comms issue but if it was randsomware id reckon all PC's would be infected in some way so stop using it. but staff literrally in the dark. pretty sure their managers and upper management knows. they just quiet about it.

i did ask my guy at Mustek if they somewhat affected and he said no but internal issues maybe. but its all speculation anyway.

Syntech and Pinnacle etc will benefit on this to a point.

But mostly brand wise thats affected is
RCT
Aerocools brands (itself and APXN etc)
Gigabyte (if not via frontosa)
Asus (if not done by pinnacle/syntech)
Sunnew
eh couple of power stuff pretty much all of them
Hisense
Samsung
LG *(if not done by others)
Logitech (to a point mostly been getting from SMD or Mustek)
Cooler Master (not like its selling)
Corsair (for now)
Elgato
Transcend
Seagate *(if not done by others not like there is ever enough stock)
AMD and Intel (small amounts)
Cricut
Vantech
Synology
DJI enterprise and argricultural
PNY (workstation cards only)
MSI (laptops)
Acer (Some if not done by others )
Lenovo (some if not done by others)
ZAGG (if not done by others)
Ecoflow
Vivotek

list goes on ish. but other solutions in the market is available from other suppliers anyway
 
Surely a company that sells ransomware protection services, such as backup platforms, has these systems in place for its own operations?
forgot about you

I wont mention the companies name but i know one that sells security...and they got hacked and ransomware i too thought it was funny. and the boss paid them apparently the attackers support was top notch service he said was the best hes ever had which was weird.
 
as far as i know they just cant access studio their mails are working tho (auto responses are active and confirmed they getting my mails).
Mail would be handled externally (Exchange), so shouldn't be affected. Studio is basically everything internal, so that aligns with my thoughts.

pretty sure their managers and upper management knows. they just quiet about it.
And if my theory is correct, they have to be (legal repercussions). It would be an entirely need-to-know basis for now.
 
Mail would be handled externally (Exchange), so shouldn't be affected. Studio is basically everything internal, so that aligns with my thoughts.


And if my theory is correct, they have to be (legal repercussions). It would be an entirely need-to-know basis for now.
Yep not just that shareholders would have to be informed as well.

Probably after investigations done.

Got a mail saying they should be back tomororw so lets see how that goes.
 
Surely a company that sells ransomware protection services, such as backup platforms, has these systems in place for its own operations?
Its all about the bottom line and how much inventory they can move, I bet only a few guys actually know what some of the ransomware or Tech solutions they sale do beyond sales knowledge. Corporate is usually held together by a few people while the rest don't have a clue what is happening.
 
Just received... "Rectron regrets to inform you that we have become the latest victim of a cyberattack –an all-too-familiar phenomenon in South Africa and indeed around the world. The incident, identified on 15 July 2026, has affected certain of our information technology (IT) systems and operations.

Investigations are ongoing to determine the nature and extent of the information that may have been accessed, and we are taking all reasonable steps to restore normal operations as soon as practicable."
... continues ...
 
Top
Sign up to the MyBroadband newsletter
X