Ransomware
Rapattoni MLS Software Ransomware Attack
Primary Source βIncident Details
Ransomware hit Rapattoni Corp. (California-based MLS software provider serving ~100 MLSs and approximately 5% of US MLSs) on 9 August 2023. The attack froze MLS systems used by hundreds of thousands of real estate agents nationwide, blocking new listings, price changes, and open house updates for up to two weeks. Zillow and other property portals were forced to fall back on manual processes. Federal investigators worked with Rapattoni and insurance carriers on negotiation. Rapattoni also provides membership management software raising concerns about member credit card data exposure. One of the largest disruptions to US real estate operations from a cyberattack.
Technical Details
- Initial Attack Vector
- Ransomware attack on Rapattoni Corp. cloud infrastructure hosting MLS software as a service; initial vector not publicly disclosed
- Vendor / Product
- Rapattoni MLS-as-a-Service
Timeline
- 2023-08-09 Breach occurred
- 2023-08-11 Publicly disclosed
- 2023-08-14 Customers notified