Dashboard
CS
CyberWatch SOC
[URGENT] Critical Ransomware Activity Detected on RTD Network
Reply-to: soc@cyberwatch.mw
To the Road Traffic Department IT Team,
Our systems have detected active ransomware deployment on your application server 'RTD-APP-01'. This is a critical alert.
We are observing widespread file encryption consistent with the Lockbit ransomware family. We strongly advise you to immediately isolate the affected server and any connected systems to prevent further spread.
Please confirm your incident response team has been activated. We are standing by to provide immediate assistance, including IOCs and remediation guidance.
Regards,
CyberWatch Security Operations Center