Menu
Browse

Cyber Incident Victim: North Lakes Pain Consultants

Date:

May 2022

Location:

Canada

Summary

Regina Public Schools experienced a disruptive cyberattack prompting a system-wide shutdown of all internet-dependent services, including email and educational platforms, to contain the breach. The incident involved ransomware deployed by the BlackCat/ALPHV group, known for such attacks, with a threatening note appearing on compromised network devices, severely disrupting administrative operations and student learning activities reliant on online tools.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actor Type Location
1 actor Available to members Available to members

Description

On or around May 27, 2022, Regina Public Schools experienced a disruptive cyberattack that compelled the district to shut down all internet-dependent systems as a containment measure. The attack disrupted critical operational and educational tools, including district email services and online learning platforms, impacting daily administrative functions and classroom activities. The incident’s severity became apparent when a ransom note appeared on computers within the school network, explicitly attributing the attack to the BlackCat/ALPHV ransomware group. Cybersecurity experts familiar with BlackCat/ALPHV’s tactics confirmed the group’s reputation for deploying ransomware to encrypt victim systems and extort payments. No specific ransom demand or data compromise claims were disclosed in the initial reports reviewed by CBC News.

Cyber Incident Image

The immediate response focused on isolating affected systems to prevent further propagation of the attack, though the district did not publicly detail technical containment steps beyond the network-wide internet shutdown. The prolonged outage hindered communication channels and access to digital educational resources, creating operational challenges for staff and students. Regina Public Schools did not initially release information about the attack’s duration, data recovery processes, or whether law enforcement was engaged. CBC News verified the ransom note’s authenticity and the involvement of BlackCat/ALPHV through independent cybersecurity analysis but noted no additional claims or evidence regarding stolen data. The incident underscored the vulnerability of educational infrastructure to ransomware threats disrupting essential services.

Sources
Sources available to members
1 source