NSW, Australia, December 12, 2024 – Ainsworth Game Technology Limited has been listed on the dark web leak site by the Medusa ransomware gang, which claims to have exfiltrated 852.40 gigabytes of sensitive data from the gaming machine manufacturer.
Founded in 1995, Ainsworth Game Technology operates across Australia, New Zealand, Asia, the US, and Europe, and is headquartered in New South Wales, Australia. The company specializes in the manufacture and supply of gaming machines.
On December 10, Medusa announced the breach, alleging that the stolen data includes confidential business documents and personal employee information such as names, dates of birth, email addresses, bank account numbers, tax ID numbers, and passport details. A significant portion of the data is reported to pertain to Ainsworth’s operations in Australia.
The ransomware group has set a ransom of $1.2 million for the data, which they are also offering for sale at the same price. A countdown timer has been initiated for the release of the data in two weeks. Ainsworth Game Technology has not yet publicly acknowledged the incident, and Cyber Daily has reached out for a statement without receiving a response.
This incident follows a similar attack in September when Medusa targeted Compass Group Australia, claiming to have stolen 785.5 gigabytes of data. The group demanded a ransom of $2 million, threatening to publish the data if their demands were not met. A spokesperson for Compass Group confirmed the unauthorized activity and stated that they activated their incident response plan and engaged forensic experts to address the breach.
The situation highlights the ongoing threats posed by ransomware gangs and the critical need for organizations to enhance their cybersecurity measures to protect sensitive information.