Ingram Micro Recovers from Ransomware Attack, Restores Operations

Edward Zhou
Edward Zhou

CEO & Co-Founder

 
July 17, 2025 3 min read

Ingram Micro Ransomware Attack

Ingram Micro

Ingram Micro reported a ransomware incident on July 4 that targeted its internal systems. The company took affected systems offline immediately after discovering the ransomware. Ingram Micro stated, “The Company also launched an investigation with the assistance of leading cybersecurity experts and notified law enforcement.” The company is working to restore operations while apologizing for disruptions experienced by customers and vendor partners.

Ingram Micro reported $48 billion in sales last fiscal year, operating as a key connector between organizations and technology manufacturers. The attack was noted to be linked to the SafePay ransomware gang, which has been responsible for multiple attacks, including on other organizations such as government contractor Conduent.

Further details from cybersecurity expert Rebecca Moody indicate that SafePay has conducted 238 attacks, averaging 111 GB of stolen data per incident.

Links:

Progress on Restoring Operations

As of July 5, Ingram Micro announced it could again process and ship orders electronically across all business regions following the ransomware attack. The company confirmed that its systems were remediated with the help of third-party cybersecurity vendors, and partners could place orders via email and phone.

Ingram Micro's update emphasized that their teams were making progress in restoring functionalities, stating, “We believe the unauthorized access to our systems in connection with the incident is contained and the affected systems remediated.” The company has faced criticism from partners for the time taken to restore operations, and many had to source products from other distributors.

Links:

Operational Challenges and Updates

Ingram Micro Xvantage

Ingram Micro is working on restoring its transactional business, which was disrupted by the ransomware attack linked to SafePay. The company operates a digital platform called Ingram Micro Xvantage, which includes order tracking and personalized recommendations. While subscription orders are being processed, limitations still exist for hardware and technology orders.

The company has communicated ongoing updates about the status of its operations and confirmed that it filed with the Securities and Exchange Commission regarding the incident.

Links:

Erie Insurance Network Outage Recovery

Erie Insurance Logo

Erie Insurance has restored full business operations following a month-long network outage. The company confirmed that there is “no evidence” of any data breach during this incident. The insurer stated, “Key services and systems have been safely and securely restored,” and local agents and customer care teams are back to serving customers.

The network outage initiated by Erie was aimed at containing a potential threat. The company previously faced two class-action lawsuits alleging a ransomware group accessed their network, but their recent announcement indicated no such breaches occurred.

Links:

Explore our services or contact us for more information. For inquiries, please visit our website.

Edward Zhou
Edward Zhou

CEO & Co-Founder

 

CEO & Co-Founder of Gopher Security, leading the development of Post-Quantum cybersecurity technologies and solutions.

Related News

CVE-2025-15467: Critical OpenSSL RCE and DoS Vulnerability Overview
OpenSSL vulnerability

CVE-2025-15467: Critical OpenSSL RCE and DoS Vulnerability Overview

Urgent: OpenSSL 3.x vulnerable to CVE-2025-15467, enabling pre-auth RCE. Learn affected versions, impact, and immediate mitigation steps. Protect your systems now!

By Divyansh Ingle March 10, 2026 4 min read
common.read_full_article
SolarWinds Patches Critical Web Help Desk RCE Vulnerabilities Now
SolarWinds Web Help Desk

SolarWinds Patches Critical Web Help Desk RCE Vulnerabilities Now

Critical RCE & Auth Bypass flaws in SolarWinds Web Help Desk are fixed! Don't risk it. Update to v2026.1 now to protect your systems. Learn more.

By Edward Zhou March 9, 2026 4 min read
common.read_full_article
AI vs Human Hackers: Who Prevails in 2026 Pen Testing?
AI hacking

AI vs Human Hackers: Who Prevails in 2026 Pen Testing?

Discover the results of a groundbreaking study comparing AI agents and human hackers in web vulnerability exploitation. See who prevails and what it means for your security. Read now!

By Jim Gagnard March 6, 2026 6 min read
common.read_full_article
Vulnerability Exploits Lead Cyber Intrusions in 2026 Trends
vulnerability exploits

Vulnerability Exploits Lead Cyber Intrusions in 2026 Trends

Exploits are now the top intrusion method, outpacing phishing. Discover why rapid vulnerability patching is critical and how to bolster your defenses. Read more!

By Edward Zhou March 4, 2026 4 min read
common.read_full_article