Honolulu Star-Advertiser

Wednesday, April 24, 2024 78° Today's Paper


Top News

Kronos warns cyberattack may knock software offline for weeks

ASSOCIATED PRESS / 2013
                                Ultimate Kronos Group subsidiary Kronos, a provider of payroll and time-sheet software, said it suffered a ransomware attack that may force its systems offline for weeks.
1/1
Swipe or click to see more

ASSOCIATED PRESS / 2013

Ultimate Kronos Group subsidiary Kronos, a provider of payroll and time-sheet software, said it suffered a ransomware attack that may force its systems offline for weeks.

Ultimate Kronos Group subsidiary Kronos, a provider of payroll and time-sheet software, said it suffered a ransomware attack that may force its systems offline for weeks.

The company became aware of the issue Saturday and began steps to “investigate and mitigate” it, according to a message the company sent to its customers and posted on its website. Kronos said it was “working with leading cyber-security experts to assess and resolve the situation,” but warned users to find alternative options given the delay expected before its software is working again.

“While we are working diligently, our Kronos Private Cloud solutions are currently unavailable,” the company said. “Given that it may take up to several weeks to restore system availability, we strongly recommend that you evaluate and implement alternative business continuity protocols related to the affected UKG solutions.”

>> RELATED: Cyberattacks hit at least 3 Hawaii government systems in past week

Other products, like UKG Pro, weren’t affected, the company said. Kronos has a widespread customer base, noting on its website that clients include Tesla Inc., the city of Cleveland, Kum & Go convenience stores, MGM Resorts International and multiple health agencies. Users, including New York City’s Metropolitan Transportation Authority, were unable on Monday to access Kronos services.

Kronos hasn’t said whether the attack is related to the Log4Shell vulnerability discovered this past weekend, which U.S. cybersecurity officials called “a significant threat.”

Alongside the ransomware attack, the company’s customer conference, UKG Connections, kicked off in Las Vegas on Monday.

By participating in online discussions you acknowledge that you have agreed to the Terms of Service. An insightful discussion of ideas and viewpoints is encouraged, but comments must be civil and in good taste, with no personal attacks. If your comments are inappropriate, you may be banned from posting. Report comments if you believe they do not follow our guidelines. Having trouble with comments? Learn more here.