Expert Insights
Check out the main content produced by our team of experts.

Cloak ransomware attack compromises production and backup at an industrial company
A mid-sized company in the industrial sector, operating in precision engineering, tool manufacturing, and the machining of highly complex technical components, faced a critical scenario after a ransomware attack that compromised nearly its entire infrastructure. In this case, data recovery was not possible, even after a complete technical analysis of the environment, due to the high level of complexity of

🇰🇪 Recovery of a critical database after The Gentlemen ransomware attack in Kenya
A financial company in Kenya faced a severe ransomware incident that compromised its VMware virtual environment and paralyzed its operations for one week. The attack affected a volume exceeding 10 TB of critical data and created an extremely high-pressure situation for the client, who needed to restore business continuity as quickly as possible. The group responsible for the attack was

Recover Backup Exec, Arcserve, Veeam and Micro Focus Data Protector tapes
Data loss on magnetic tapes remains a recurring problem in companies that use backup solutions such as Backup Exec, Arcserve, Veeam and Micro Focus Data Protector. Although these software solutions are widely used in corporate environments, failures in the media, the drive, the backup catalog or the original environment itself can prevent data restoration. In many cases, the tape still

Recover LockBit 5.0 Ransomware
LockBit 5.0 is the latest evolution of one of the most aggressive and highly professionalised ransomware families in the world. Operated by the criminal group LockBit, this ransomware is known for highly targeted attacks, rapid execution, and strong encryption capabilities, causing a complete shutdown of operations for affected organisations. Unlike simpler variants, LockBit 5.0 uses an extremely mature Ransomware-as-a-Service (RaaS)

🇩🇪 Virtual Machine Recovery After a LockBit 5.0 Ransomware Attack in the Automotive Sector
Digital Recovery was engaged to respond to a critical incident involving a mid-sized German automotive company whose IT infrastructure was severely compromised by a ransomware attack. All communication and case management were conducted directly with the company responsible for providing IT support to the end client. According to the initial analyses and technical reports provided by the IT support team,

🇩🇪 Virtual machine recovery after a LockBit 5.0 ransomware attack
Digital Recovery was engaged to respond to a critical incident involving a mid-sized company in the woodworking sector, with more than 30 employees, whose IT infrastructure was severely compromised following a ransomware attack. The attack occurred through the exploitation of a vulnerability, allowing unauthorised access to the organisation’s internal environment. Following the intrusion, the attackers deployed LockBit 5.0 ransomware, one