Arab Press

بالشعب و للشعب
Friday, Mar 13, 2026

New Ransomware Group Exposes Vulnerability of DC Police’s Tech Infrastructure

New Ransomware Group Exposes Vulnerability of DC Police’s Tech Infrastructure

The expanding digital age has opened up a new lane of expenses, as some institutions are learning the hard way that having a dedicated cyber security staff and knowledge is a necessity. Hospitals and city and county governments have become easy targets for some global hackers.

A new ransomware developed by the Babuk hacker group has accessed the computer system of Washington, DC’s Metropolitan Police Department, a development which has since seen the group threaten to leak confidential files if they are not contacted within three days.

The DC police department confirmed in a Tuesday YouTube post that unauthorized access occurred, and that the FBI were now looking into the matter.


The files encrypted by the hack group included arrest history, housing and financial records, polygraph results and details about training and work history for some officers. Screenshots posted online included police reports, internal memos, mugshots and gang conflict reports.


Babuk claimed to have accessed over 250 GB of data from the police department in a signature ransom note that slammed the department on its slow computer software updates. The forum that the hacker group works under communicates in both English and Russian. In a message to the police department, the group indicated they were able to find vulnerabilities in the computer system that were not fixed by patch updates in time.

The DC police department is only one of the major targets to be hit by the Babuk cyberattack this year. Other victims include the UK-based Serco company that deals with COVID-19 testings and the NBA Houston Rockets.

A hack from Babuk usually includes a ransom note like the one pictured above, which is normally located in a file, labeled “How To Restore Your Files.txt,” and provides information on how the user can go about recovering their data.


Patches are updates, usually related to security that gets added onto a computer system to help fix-up any vulnerability. As the technological world is ever changing, there is always a newer, faster and more efficient way to handle data. Ransomware groups like Babuk often find ways to exploit these vulnerabilities by using different algorithms to communicate with computer systems through coding.

The algorithms used by hacking groups are known as ransomware since it requires a key to access the hijacked data, and the key is usually only known by the creators of the virus, which is how hackers are able to hold the data for ransom.

According to some critics, Babuk is only an “amateur” hacking group that uses the Eclliptic-Curve Diffie-Hellman (ECDH) algorithm to ensure that their own operating systems are secure and not easy to access or change.

ECDH algorithms require subtle changes to a file that make it difficult to access items unless the file holder can decode the information needed to decrypt the data and translate it in a way that the computer can successfully read.

Ultimately, this means the Metropolitan Police Department may or may not still have the ability to combat the ransomware if they are able to decode the common algorithm shared with the hacking group, which can possibly be found through suspected phishware.

Babuk operates on a ransomware-as-a-service (RaaS) model, meaning they are but a front for a much larger hacking affiliation since Babuk is known to use implementations of SHA256 hashing algorithm, which has links back to the US National Security Agency (NSA) and the ChaCha8 encryption that also has ties to US-based computer technology development.

Cyber space


According to AP, the Babuk group has only been discovered this year, but has so far hit 26 government agencies in the US, releasing data from 16 of them, thereby exposing the poor cyber security of most agencies. The group is known to target the agricultural, electronic, plastic surgery and dental health care and transportation sectors.

The groups most vulnerable to cybersecurity threats include schools, hospitals and state and municipal systems. In 2019, 113 state and municipal groups were hit by ransomware attacks, the most famous of which being the attack on voting infrastructure during the 2020 elections in Georgia. The largest cybersecurity attack so far has been the 2017 WannaCry cyberattack launched by the Democratic People’s Republic of Korea.

The Babuk group exposes the vulnerability of its targets, but usually asks for bitcoin payments below $100,000. The group has boasted that it does not attack hospitals or organizations that earn below $4 million, and that it mostly stays away from nonprofit organizations, except those associated with the Black Lives Matter movement and the LGBTQ communities.

Babuk has indicated that it will launch a dedicated leak site in the near future. The administration of US President Joe Biden has claimed that they are boosting efforts to shield the US cyberspace from hackers by analyzing the system’s vulnerabilities and pinpointing threats.

Newsletter

Related Articles

Arab Press
0:00
0:00
Close
Asian Energy Security Tested as Strait of Hormuz Disruption Threatens Oil Supplies
Iran Sets Three Conditions for Ending Regional War as Diplomatic Efforts Intensify
Saudi Arabia Launches Royal Institute of Anthropology to Examine Social Transformation
Pakistan’s Prime Minister Shehbaz Sharif Arrives in Saudi Arabia for High-Level Talks
Saudi Aramco Turns to Ukrainian Drone Interceptors to Shield Oil Infrastructure from Iranian Threats
UK Foreign Secretary Travels to Saudi Arabia to Reinforce Support for Regional Allies
Rising Iran Conflict Casts Shadow Over Saudi Arabia’s $38 Billion Gaming Industry Ambitions
Iran Launches Missile and Drone Strikes Across Gulf as Oil Prices Surge Past $100
Saudi Air Defences Destroy Three Drones Targeting Strategic Shaybah Oil Field
Debate Grows Over Saudi Arabia’s Role in Sudan War Amid US Alliance Questions
Pakistan’s Prime Minister Travels to Saudi Arabia After Discussions With Iranian Leadership
Two Strategic Pipelines Allow Saudi Arabia and the UAE to Bypass the Strait of Hormuz
US Deploys Bunker-Buster Bombs to UK Airbase as Iran Conflict Intensifies
Iran warns of $200 oil as forces target merchant ships in Gulf
Japan to Release 45 Days of Oil Reserves Amid Iran Conflict
Three Commercial Vessels Attacked Near Strait of Hormuz, Thai-Flagged Ship Damaged and Crew Evacuated
Saudi Red Sea Oil Exports Set for Record in March as Kingdom Reroutes Crude Amid Hormuz Crisis
Saudi Arabia Seeks Belgian Military Support After Iranian Missile Attacks
Saudi Arabia Welcomes US Decision to Designate Sudan’s Muslim Brotherhood as Terrorist Organisation
Saudi Aramco Plans Dual Gulf and Red Sea Export Routes as Iran Crisis Disrupts Oil Shipments
Saudi Cabinet Condemns Iranian Attacks and Reaffirms Kingdom’s Right to Defend Its Sovereignty
Ukraine Deploys Counter-Drone Teams to Gulf States as Iranian Drone Threat Expands
Bahrain Grand Prix Faces Uncertainty as Saudi Arabia Works to Keep Formula One Race on Track
Saudi Arabia Faces New Strategic Dilemma in Yemen as Regional War Reshapes Calculations
OPEC Confirms Saudi-Led Oil Output Increase as Iran War Disrupts Global Energy Markets
Pakistan Pledges Rapid Support for Saudi Arabia Amid Escalating Middle East Tensions
Global Energy Agency Announces Record Release of 400 Million Barrels to Stabilize Oil Markets Amid Hormuz Disruption
Aramco Warns Global Oil Market Faces ‘Catastrophic’ Shock if Strait of Hormuz Remains Closed
Iran Launches Drone and Missile Attacks Across Gulf Targets Including Saudi Arabia, Kuwait and Bahrain
Saudi Arabia Elevates Fahad Al-Saif as Vision 2030 Enters Crucial Implementation Phase
Saudi Aramco Expands Routes to Move Oil Without Reliance on the Strait of Hormuz
Saudi Arabia and Pakistan Reaffirm Mutual Defense Cooperation Following Iran Strike
Saudi Arabia Plans Major Ukrainian Arms Deal to Counter Iranian Drone Threat
Pentagon Signals Intensification of U.S. Air Campaign as Iran Conflict Escalates
U.S. Senator Lindsey Graham Raises Prospect of Mutual Defense Pact With Saudi Arabia Amid Iran Conflict
Why Saudi Arabia Is Unlikely to Have Wanted U.S. Airstrikes on Iran
Saudi Arabia’s Red Sea Oil Exports Set to Reach Record High as Gulf Routes Face Disruption
Saudi Arabia Pushes East–West Oil Pipeline Toward Full Capacity as Hormuz Crisis Disrupts Global Energy Flows
Oil Prices Retreat From Peak as G7 Weighs Release of Strategic Reserves
Pentagon Identifies U.S. Soldier Who Died After Iranian Strike on Saudi Air Base
Why Saudi Arabia’s $50 Billion ‘The Line’ Megacity Slowed — and How Artificial Intelligence Is Reshaping the Plan
United States Withdraws Diplomatic Staff from Saudi Arabia and Southeast Turkey as Regional Conflict Escalates
Fanatics Moves Tom Brady Flag Football Showcase from Saudi Arabia to Los Angeles Amid Regional War
Saudi Arabia Seeks Strategic Support from Pakistan After Iranian Missile and Drone Attacks
Saudi Arabia Begins Oil Output Cuts as Hormuz Disruption Forces Storage Limits
Saudi Arabia Travel Advisory Tightened as Middle East War Triggers Regional Security Alerts
Saudi Arabia Warns Iran It Will Be ‘Biggest Loser’ as Drone Strikes Spread Across Gulf States
Lindsey Graham Urges Saudi Arabia to Join US Effort Against Iran as War Expands
Saudi Crown Prince Holds Strategic Calls With Spanish and Ukrainian Leaders Amid Regional Tensions
Kuwait’s Jazeera Airways Shifts Operations to Saudi Arabia Amid Regional Airspace Disruptions
×