Colombian energy giant Ecopetrol says thousands of user accounts were affected by a cyberattack



  • Ecopetrol confirms ransomware attempt in which attackers stole data from 3,300 user accounts but did not implement the encryption due to security controls
  • The stolen files were pseudonymous, with no user identities or credentials compromised; Transactional systems and partner networks were not affected.
  • The company expelled the attackers, began an investigation and notified Colombian authorities; No details of the ransom demand or data leaks have emerged so far.

Latin American energy producer Ecopetrol has revealed that it was the victim of a ransomware attack and while the threat actors managed to get away with sensitive data from thousands of user accounts, they were unable to implement encryption and thus disrupt the company’s daily operations.

In a statement shared with the public, Ecopetrol explained how an unidentified threat actor accessed its IT infrastructure and extracted data from 3,300 user accounts. The attacker then proceeded to install an encryptor, but was stopped by the company’s security controls.

Leave a Comment

Your email address will not be published. Required fields are marked *