{"id":538817,"date":"2024-05-28T08:08:44","date_gmt":"2024-05-28T06:08:44","guid":{"rendered":"https:\/\/mybroadband.co.za\/news\/?p=538817"},"modified":"2024-05-28T08:29:10","modified_gmt":"2024-05-28T06:29:10","slug":"hacking-group-threatens-to-expose-christies-client-data-after-attack","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/538817-hacking-group-threatens-to-expose-christies-client-data-after-attack.html","title":{"rendered":"Hacking group threatens to expose Christie&#8217;s client data after attack"},"content":{"rendered":"<p>After\u00a0a cyberattack\u00a0on Christie\u2019s auction house earlier this month, a hacker group called RansomHub claimed responsibility.<\/p>\n<p>In a post on the dark web Monday, RansomHub said that it had gained access to the personal information of the firm\u2019s wealthy clients and published what it claimed was a \u201csample\u201d with a few names, nationalities and birth dates.<\/p>\n<p>The group posted the information along with a countdown clock, suggesting they would publish the entire trove in early June.<\/p>\n<p>The group\u2019s claims and the authenticity of the data it published could not be immediately verified.<\/p>\n<p>But a Christie&#8217;s spokesperson acknowledged that some client information was taken.<\/p>\n<p>\u201cOur investigations determined there was unauthorized access by a third party to parts of Christie\u2019s network,\u201d wrote the\u00a0spokesperson in a statement on Monday.<\/p>\n<p>\u201cThey also determined that the group behind the incident took some limited amount of personal data relating to some of our clients.<\/p>\n<p>There is no evidence that any financial or transactional records were compromised.\u201d<\/p>\n<p>The attack, which led to the auction house taking down its site on May 9, came days before Christie\u2019s began its all-important 20th and 21st century\u00a0May auctions in New York.<\/p>\n<p>This briefly threw the success of the auctions\u00a0in doubt.\u00a0But Christie\u2019s, which at the time called the attack a \u201ctechnology security incident,\u201d was able to post its auction catalogs on a separate site, and gave collectors who registered a link to bid online.<\/p>\n<p>All told, the main Christie\u2019s website was offline\u00a0<a href=\"https:\/\/www.artnews.com\/art-news\/news\/christies-website-and-app-is-back-online-after-ten-day-outage-1234707625\/\" target=\"_blank\" rel=\"noopener noreferrer\">for approximately 10 days<\/a>. Christie\u2019s is held by the\u00a0billionaire Pinault family\u2019s\u00a0<a href=\"https:\/\/www.bloomberg.com\/profile\/company\/224059Z:FP\" target=\"_blank\" rel=\"noopener noreferrer\">Artemis SA<\/a>.<\/p>\n<p>Last year, the auction house\u00a0<a href=\"https:\/\/press.christies.com\/christies-projected-global-sales-total-62-ps5-eur58-hk487-billion-in-2023\" target=\"_blank\" rel=\"noopener noreferrer\">reported<\/a>\u00a0global sales of approximately $6.2 billion.<\/p>\n<p>Brett Callow, a threat researcher at the cybersecurity firm Emsisoft, said it appears \u201cquite likely\u201d\u00a0that RansomHub was involved in the breach of Christie&#8217;s but it&#8217;s not clear whether the group made off with as much data as they claim.<\/p>\n<p>\u201cThe biggest concern in this case may be the possibility of the location of very expensive artworks being posted online,\u201d\u00a0Callow told Bloomberg in an email.<\/p>\n<p>The Christie\u2019s spokesperson added that \u201cChristie\u2019s is currently notifying privacy regulators, government agencies as well as in the process of communicating shortly with affected clients.\u201d<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The attack, which led to the auction house taking down its site for a day, came just before Christie&#8217;s began its all-important 20th and 21st century\u00a0auctions in New York.<\/p>\n","protected":false},"author":341034,"featured_media":538819,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_sma_x_autopost_status":"idle","_sma_x_autopost_error":"","_sma_x_post_id":"","_sma_facebook_post_id":"","_sma_instagram_post_id":"","_sma_threads_post_id":"","_sma_x_attempts":0,"footnotes":""},"categories":[27],"tags":[66851,86183,94991,30150],"class_list":["post-538817","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-brett-callow","tag-christies","tag-ransomhub","tag-ransomware"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/538817"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/341034"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=538817"}],"version-history":[{"count":1,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/538817\/revisions"}],"predecessor-version":[{"id":538831,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/538817\/revisions\/538831"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/538819"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=538817"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=538817"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=538817"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}