December 15, 2021  —  Eric Swotinsky
Incident reports

HR management provider Kronos hit by ransomware

Kronos, the provider of workforce management and human capital management solutions, has suffered a significant ransomware attack that threatens to disrupt payroll and timesheet processing services for its customer organizations.

Kronos is one of the largest HR management companies, and boasts an annual revenue of over $1 billion. Its list of prominent customers includes Tesla, Community Bank, and the San Francisco Municipal Transit Authority. 

Services using the Kronos Private Cloud have been taken down completely, with their UKG Workforce Central, UKG TeleStaff, and Banking Scheduling solutions all being affected. It's possible that attackers used the Log4Shell vulnerability to breach Kronos' system, or they may have gained access via other means.

Acronis Cyber Protect's suite of tools makes it easy to automatically patch protected systems against the latest vulnerabilities, as well as stopping both known and unknown ransomware variants in their tracks with its built-in Active Protection.