Kronos ransomware attack could affect employees’ paychecks and timesheets for weeks

[ad_1]

Kronos has a long list of notable public and private sector clients, including the City of Cleveland, the Metropolitan Transportation Authority (MTA) in New York, Tesla, and MGM Resorts. International. It also partners with many hospitals across the country.

Some employers need to ensure that contingency plans to pay employees, such as switching to paper checks. And some affected employees were unable to access payroll systems.

The ransomware attack affects Kronos Private Cloud solutions, a data storage entity for several of the company’s services, including UKG Workforce Central, which is used by employees to track hours and schedule shifts.

“UKG recently became aware of a ransomware incident that disrupted the Kronos Private Cloud, which contains solutions used by a limited number of our customers. We took immediate action to investigate and resolve the issue, alerted our affected customers and informed the authorities, and are working with leading cybersecurity experts,” a Kronos spokesperson told CNN Business.

“We recognize the seriousness of the issue and have mobilized all available resources to support our customers and are working hard to restore the affected services,” the spokesperson added.

In most cases, it is still possible to log hours on the offline Kronos timesheet system, although it is unclear when these systems will come back online.

“[E]every employee gets paid for every hour they work. We are very confident that we can control how many hours employees work and pay them for those hours and we will continue to ask employees to keep track of time as they always have,” MTA spokesman Tim Minton told CNN Business.

The news of the ransomware incident came after a security flaw in widely used software on the Internet called Log4j was made public late last week, opening the door to hackers in many companies’ systems. Kronos has not confirmed that the ransomware attack is related to the Log4j vulnerability and has not responded to CNN Business’s request for comment on a possible connection.

A separate banner on Kronos’ website, which was not part of the HR company’s specific messages about the ransomware attack, warned of the potential impact of the Log4j vulnerability, noting that the company had “invoked emergency patching procedures.” to tackle it.

In addition to potential payroll issues, there are also data privacy concerns. The city of Cleveland said in a rack Monday that Kronos warned it that sensitive information may have been compromised in the attack. The names, addresses and the last four digits of employees’ social security numbers may have been stolen by the hackers within the Kronos network.
in a FAQ page On its site about the security incident, Kronos said the “investigation is ongoing and we are working diligently to determine whether customer data has been compromised.”

Sources

1/ https://Google.com/

2/ https://www.cnn.com/2021/12/16/tech/kronos-ransomware-attack/index.html

The mention sources can contact us to remove/changing this article

[ad_2]

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Posts