French cloud services provider Bretagne T..l..com was hacked by the threat actors behind the DoppelPaymer Ransomware using an exploit that targeted servers unpatched against the CVE-2019-19781 vulnerability. The attack happened in the middle of the night, leaving every bit of information on the hacked systems “completely encrypted”” The company was able to restore all the encrypted systems from readily available backups on Pure Storage FlashBlade arrays. The company had to work for as much as three days on a row to restore some of their customers’ impacted systems.”
Source: https://www.bleepingcomputer.com/news/security/doppelpaymer-hacked-bretagne-t-l-com-using-the-citrix-adc-flaw/