An Attacker Sent a Ransom Email From Blesta’s Own Servers

On June 26, recipients began receiving an email from Blesta <[email protected]>, subject line “Blesta Compromised,” telling “all Blesta customers” that the sender had hacked the billing-software vendor, held all their data, and would leak it within 48 hours unless the owners paid. The instinctive read is the right starting point and the wrong conclusion: this looks … Continue reading An Attacker Sent a Ransom Email From Blesta’s Own Servers