Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

This Hacker Messed With the Wrong Transportation Agency

This Hacker Messed With the Wrong Transportation Agency

While San Francisco residents might not be happy that they’ll again have to pay fares to ride the city’s rail system, the reason they again have to do so is understandable. Plus, it provides an excellent example of the importance of maintaining a backup and using complex passwords.

A hacker or group of hackers, operating under the moniker Andy Saolis, managed to halt the collection of fares by the San Francisco Municipal Transportation Agency (or Muni) by hacking their station computer system and introducing a strain of ransomware into it. As a result, Muni employees were unable to access their workstations and some of the agency’s systems were disabled.

However, the hacker claimed to have accomplished more, as ticketing kiosks across the city would only display “you hacked. ALL data encrypted.” The ransom demand for the decryption key was approximately $73,000 in Bitcoin. Despite the hacker’s apparent confidence in their accomplishment, Muni elected to not pay the ransom, deciding instead to restore their systems from a backup and allowing cybersecurity experts to strike back against the hacker, not just once, but twice.

Two independent vigilante hackers managed to access the email account of “Andy Saolis” to collect information that helped to stop the attack, both by correctly guessing the answer to the account’s security question. It would seem that the hacker(s) known as Andy Saolis had been active for a while, but had never before targeted anything other than private companies, which very well may have led to their downfall.

Once the attack was thwarted it came to light that seemingly no data, including that from Muni’s customer payment systems, had been accessed, despite the attack affecting 25 percent of Muni’s network. Saolis, unsurprisingly, gave a considerably different account online.

Claiming to have stolen data from the payment kiosks, as well as 30 gigabytes of data from Muni’s system on their employees, customers, and technical matters, Saolis wasn’t shy about casting himself (or themselves) in the light of the vigilante against an unjust system.

According to an email sent through Russian service Yandex.com, “They give Your Money and everyday Rich more! But they don’t Pay for IT Security and using very old system’s !”

Shortly after the attack ended, security experts were also able to establish that the emailer was based in Iran, and had gained access to the hacker’s servers.

Though Muni never had to pay a ransom for their data, this attack wasn’t cheap, costing them the combined total of the free rides they granted to commuters as their systems were compromised. However, this total would certainly be less than the actual cost of the Bitcoin ransom, and so a good general rule to follow is to never give in to a hacker’s possibly insincere demands.

On the topic of the hacker, whose password was guessed by two separate strangers, how weak must this password have been? While nobody should ever complain about a hacker being foiled, it goes to show how a complete stranger could find their way into your accounts if you aren’t being careful..

This case is far from over, as the Federal Bureau of Investigation and the U.S. Department of Homeland Security are still investigating the matter, which provides proof that public systems are still unable to be fully trusted.

There is a lot for SMBs to learn from this story. How confident are you in your IT security? If you feel it’s time for a security audit in order to determine how protected your business is from all kinds of threats, reach out to Total Tech Care at 866-348-2602.

 

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 30 April 2025
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Efficiency Software Network Security Business Google Microsoft Internet Email Malware Workplace Tips Backup Innovation Data User Tips Computer Mobile Devices Hardware IT Services Android VoIP Disaster Recovery communications Smartphones Communication Business Continuity IT Support Miscellaneous Smartphone Mobile Device Browser Small Business Network Collaboration Productivity Quick Tips Cybersecurity Business Management Users Managed IT Services Upgrade Phishing Windows Data Backup Outsourced IT Ransomware Windows 10 Data Recovery Server Save Money Cloud Computing Office Passwords Windows 10 Chrome Tech Term Virtualization Social Media Gadgets Saving Money Holiday Microsoft Office Managed Service Automation Managed IT Services Operating System Facebook Computers Cybercrime Artificial Intelligence Networking IT Support Hacking Internet of Things Health BYOD Wi-Fi Mobile Device Management Spam Managed Service Provider Office 365 Covid-19 Information Telephone Systems Information Technology Alert Remote Social Engineering Mobility Router BDR Employer-Employee Relationship Recovery Bandwidth Money Remote Monitoring Data Breach Encryption Big Data Applications App History Law Enforcement Mobile Computing Human Resources Application Password Apps Mobile Office Blockchain Paperless Office Office Tips Training Government How To VPN Private Cloud Managed IT Data Storage Patch Management Remote Computing HaaS Servers Google Drive Data Security Infrastructure Wireless Voice over Internet Protocol Flexibility Avoiding Downtime Marketing Gmail WiFi Settings IT solutions Entertainment Website Budget Two-factor Authentication Bring Your Own Device Vulnerability Data Management Work/Life Balance Windows 7 Word Mouse Vendor User Error Meetings End of Support Managed Services Telephone System Vendor Management Display Staff Software as a Service Education Physical Security Machine Learning Safety Remote Work Connectivity Sports Risk Management HIPAA Hacker Redundancy Employee/Employer Relationship RMM Keyboard The Internet of Things Lithium-ion battery Data Protection Firewall Save Time USB Conferencing Virtual Reality Apple Scam Cleaning Social IT Management Humor Access Control Managed Services Provider Botnet Virtual Assistant Battery IT Plan Database Authentication Shadow IT Legal Remote Workers Wearable Technology Retail Hard Drives Unsupported Software Internet Exlporer Processor Instant Messaging Robot Excel Charger Update Hard Drive Compliance Biometrics PDF Virtual Desktop OneNote Computer Care Google Docs Identity Theft Current Events Proactive IT Virus Telephony Computing Samsung DDoS Unified Threat Management Best Practice YouTube Computer Accessories SharePoint Black Market Augmented Reality Value Fraud Spam Blocking Electronic Medical Records Customer Service Remote Worker Digital Signage Document Management Environment Wireless Technology Printer Cryptocurrency Hiring/Firing Solid State Drive Fax Server How to Bluetooth Downtime Procurement Comparison Workplace Strategy Data storage Net Neutrality SaaS Automobile Help Desk CES IT Consultant Business Intelligence Printing Network Congestion Computing Infrastructure Going Green Audit Business Technology Worker Content Management eWaste Millennials Point of Sale Tablets Reputation Personal Printers Streaming Media Public Computer Cryptomining Tech Support Smart Office Transportation Wireless Charging Content Entrepreneur Regulations Supply Chain Management Techology Monitoring Laptop Computer Fan Batteries Rootkit Workforce Shortcut Windows 8.1 Customers Digitize Virtual Private Network Workers Windows Server 2008 R2 Benefits Cables Audiobook Cost Management Consultant Customer relationships Touchpad FENG Analytics Social Networking Telecommuting Email Best Practices IT Assessment Project Management IBM Manufacturing Nanotechnology Smart Technology Cortana Politics Advertising Flash Best Available Computer Tips WIndows 7 Managed IT Service Security Cameras Digital Signature Running Cable Virtual CIO Memory Software Tips OneDrive Warranty Notifications Supercomputer Biometric Security Emails HVAC Google Apps Sync Peripheral Digital Security Cameras Using Data Analysis Devices Relocation Copiers Administrator 5G Netflix Enterprise Content Management Two Factor Authentication Quick Tip Video Games Ergonomics User Science Root Cause Analysis PowerPoint MSP Smartwatch Windows Media Player Accountants Thought Leadership Music Credit Cards Worker Commute HBO Development Microchip Knowledge OLED Virtual Machine Password Management Password Manager Experience Skype PCI DSS Multi-Factor Security Customer Relationship Management Scalability 2FA Managing Stress Data loss Fiber Optics Employee Distributed Denial of Service Twitter Troubleshooting Business Owner Analyitcs Outlook Messaging Search Engine Leadership Cabling Policy NarrowBand Hypervisor Cameras NIST Business Mangement Programming Start Menu Trending Search Dark mode Screen Mirroring Trend Micro Loyalty Smart Tech Default App Addiction Books Amazon iPhone Frequently Asked Questions SMS Mobile Procedure Windows 10s Saving Time Recycling Antivirus dark theme Windows 8 Cast Shopping Wiring Google Search Practices webinar IT Infrastructure Cache Emergency Amazon Web Services IT service Files Tip of the week AI Professional Services FinTech Chromecast Public Cloud Printer Server Safe Mode Employer Employee Relationship Bing Criminal Tablet Social Network GDPR Assessment Hosted Computing Investment Wireless Internet Online Shopping Domains Colocation Windows Server 2008 Uninterrupted Power Supply Tools Employees Employee/Employer Relationships File Sharing Specifications Maintenance Windows 365 Monitor Camera Television ISP Inventory IaaS ROI Wire Evernote Bloatware Video Conferencing Sales Bitcoin Shortcuts Travel

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code