Ransomware outage hits IDCF Cloud in Japan, impacting hundreds of clients

IDC Frontier said a ransomware attack struck its IDCF Cloud service in East Japan Region 1, forcing systems offline and affecting 495 companies and local governments. The company isolated impacted infrastructure and disabled management console access across regions while it investigates and checks other areas. The attacker claimed to have encrypted 225 databases totaling 3.6 PB and wiped many snapshots, while Nissui Logistics separately reported an outage from suspected unauthorized access at a third-party data center.
IDC Frontier, a SoftBank Group subsidiary, runs IDCF Cloud, an infrastructure-as-a-service platform offering virtual servers, storage, and networking in Japanese data centers. The incident began early on October 7 local time in East Japan Region 1, affecting 495 corporate and local-government users. The provider isolated compromised systems and temporarily blocked management-console access in every region while checking security.
The attacker claimed to have encrypted 225 databases totaling 3.6 PB, compromised 239 hypervisors, rendered 16,000 VM disks inaccessible, and erased 554,153 snapshots. Separately, Nissui Logistics reported shipping and receiving disruptions from suspected unauthorized access at a third-party data center; any link to IDCF Cloud remains unconfirmed.
The outage could disrupt local-government services and business operations that depend on IDCF Cloud, potentially delaying transactions, communications, or data recovery. If the attacker’s claims are accurate, affected organizations may face costly restoration and possible data loss. Nissui Logistics’ separate disruption may also ripple through food supply chains. The incident may heighten scrutiny of cloud resilience and third-party risk, though confirmed impacts and any connection between the two events remain unclear.