Skip to content
Posted inNews

Hackers Exploit Weak Password to Destroy 160-Year-Old Company

Weak Password Destroys KNP Logistics

It is now believed that the reason a notorious hacking group was able to bring a Northamptonshire-based haulage company to its knees was likely due to a weak password being exploited.

The aftermath of the hack, which occurred in 2023, led to over 700 employees facing redundancy, with the company, KNP Logistics – approaching 160 years in business – going under.

500 lorries strong and operating under the ‘Knights of Old’ brand at the time, KNP is just one of many UK businesses struck by cyber crime, with recent marquee name victims including Harrods, Marks & Spencer, and the Co-Op.

Weak Password Destroys KNP

The subject of a recent report on the BBC’s TV show Panorama, it is believed that a single weak password (of a KNP employee account) was exploited by hackers, granting them unauthorized access to the company’s computer system.

While KNP said it had complied with cyber security industry standards and held insurance against online attacks, it was unable to recover from what was about to become a major system breach.

The Akira hacking group reportedly behind the cyber hit carried out a ransomware attack, which involved the encryption of KNP’s data and locking of its internal system.

A note was left for the group’s victim, reading:

“If you’re reading this, it means the internal infrastructure of your company is fully or partially dead … Let’s keep all the tears and resentment to ourselves and try to build a constructive dialogue.”

While Akira didn’t mention their price for providing a decryption key (to unlock the encrypted system), a specialist ransomware negotiation firm estimated that the figure could be £5 million.

But KNP could not afford that kind of sum and, now suffering what appeared to be the permanent loss of its data, ultimately had to let go of 730 employees and file for administration.

Paul Abbott, director of KNP, believes the catalyst for the catastrophic cyber attack was most likely due to hackers guessing a weak password belonging to an employee’s account.

He has not informed the suspected account owner of this belief, however, deciding to keep the weighty news anonymous. “Would you want to know if it was you?” Abbott asked.

With cyber criminals always on the lookout for their next potential target to steal or ransom their personal and financial data, be sure to take your online security seriously with TotalAV.

Our Award-Winning software provides real-time protection against the latest online threats and scams, along with cutting-edge tools for your browser to safeguard your devices and online world.

TotalAV Footer
Share this

Top Articles

Almost 200 Million Records Breached by Ransomware Attacks in 2024
Posted inNews

Almost 200 Million Records Breached by Ransomware Attacks in 2024

Ransomware cyber gangs have claimed responsibility for over five thousand successful attacks carried out against organizations across the globe in 2024. According to Comparitech’s annual ransomware report, 1,204 attacks (from the claimed 5,461) have been confirmed by the targeted organizations, equating to a figure of 195,414,994 compromised records. While this figure could potentially increase as […]

The End of Ad Blockers in Google Chrome: What You Need to Know
Posted inNews

The End of Ad Blockers in Google Chrome: What You Need to Know

Google Chrome’s move to adopt Manifest V3 is set to change how browser extensions, particularly ad blockers, work. So is this the end of Ad Blockers in Google Chrome? Manifest V3 is part of Google’s push for better security and performance, but it imposes restrictions on how extensions handle web requests, which impacts the functionality […]