Bl00dy Claims Responsibility for Attack on Telares de Palo Grande
On January 2, 2023, the Bl00dy Ransomware Gang claimed to have encrypted the network servers of Telares de Palo Grande, a Venezuelan textile factory. The threat actors posted screenshots and CSV files (ADcomputers.csv, ADUsers.csv) as proof on their communication channel. It is currently unclear whether all sensitive data was leaked, the extent of the operational impact, and whether the company suffered financial losses.
Overview
Missing evidence
Impact details
Bl00dy allegedly targeted encrypted network servers for Telares de Palo Grande, and public alerts mention sample files such as CSV files containing Active Directory computers and users. No statement from the victim or independent forensic confirmation was found.
Classification & severity
- Category
- Malicious code
- Subtype
- Ransomware
- Confidence
- Medium
Public ransomware lists, data breach sites, and ransomware trackers identify the incident as a case of ransomware or extortion. Confirmation from the victim is not yet available.
Severity assessment
Medium- Information impact
- Proprietary data
- Affected scope
- Organization-wide
- Critical service
- None
- Public confidence
- Limited
- Recoverability
- Extended
Ransomware or extortion claim corroborated by public trackers or reports, but without confirmation from the victim or validated operational impact.
Timeline
Bl00dy listed Telares de Palo Grande as a suspected victim.