2023 ABB — Black Basta ransomware; Active Directory disruption; confirmed data exfiltration
Data compromised
Enterprise documentation and operational exports—ABB did not publish a unified PII census in week-one statements
Technical writeup
Industrial automation conglomerate ABB issued May 2023 bulletins acknowledging a professional ransomware intrusion widely attributed by reporters to Black Basta, including Active Directory containment measures, temporary VPN suspensions, plant stoppages, and acknowledgment that attackers stole data while product firmware channels stayed formally unaffected. Because the directory retains parallel `abb` and `abb-group` listings, this row duplicates the substantive incident already summarized against `abb-group` so the shorthand slug resolves cleanly for visitors.
Root cause
Human-operated ransomware with domain-wide lateral movement