Hackers take a swing at the Ryder Cup
Criminals hijacked PGA servers, locking officials out of crucial tournament files


Hackers have targeted the governing body of international golf tournaments, the PGA, by locking officials out of crucial files.
The staff of the Professional Golfers' Association (PGA) realised on Tuesday morning that the systems had been compromised when attempts to access files for the upcoming tournaments generated an ominous message.
"Your network has been penetrated," the message stated. "All files on each host in the network have been encrypted with a strong algorithm. This may lead to the impossibility of recovery of certain files."
The files are allegedly related to this week's PGA Championships at Bellerive Country Club and next month's Ryder Cup in France and contain creative materials, such as extensive promotional banners and logos used in digital and print communications. There are even unseen designs for logos for future PGA events.
The hackers encrypted the files for ransom, offering a Bitcoin wallet number, but no ransom amount has been specified.
According to Golfweek, a spokesperson for the PGA said it would not comment on the situation as it is still ongoing and that the organisation had not yet resolved the issue.
Barry Shteiman, VP of research and innovation at Exabeam, highlighted the conundrum facing organisations that fall victim to ransomware.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
"To pay or not to pay, that is the seemingly million-dollar question when it comes to ransomware," Shteiman said. "While many security experts warn about paying ransoms or entering into negotiations, the answer, in reality, comes down to simple economics.
"If the downtime caused by data being unavailable, or by the backup restoration process is more expensive than paying the ransom, then organisations should pay. Equally, if giving up on the encrypted data has a higher cost in lost revenue or intellectual property than remediation, then you can also see why an organisation would pay the ransom."
Over the last couple of years, a number of sporting events have been targeted by hackers, such as the Winter Olympic in North Korea, last season's Champions League Final in Kiev and this summer's World Cup, where Android users were tricked with malicious apps called 'Golden Cups'.
A study of ransomware victims released in March found that of those that paid up only 49% had their data handed back to them. Interestingly, of those that refused to pay, a staggering 89% said they eventually recovered their data.
Bobby Hellard is ITPro's Reviews Editor and has worked on CloudPro and ChannelPro since 2018. In his time at ITPro, Bobby has covered stories for all the major technology companies, such as Apple, Microsoft, Amazon and Facebook, and regularly attends industry-leading events such as AWS Re:Invent and Google Cloud Next.
Bobby mainly covers hardware reviews, but you will also recognize him as the face of many of our video reviews of laptops and smartphones.
-
OpenAI is teaming up with Nscale and Aker to build Europe's first AI gigafactory
News Stargate Norway aims to have 100,000 Nvidia processors up and running by the end of next year
-
Nearly half of enterprises aren't prepared for quantum cybersecurity threats
News Most businesses haven't even started transitioning to post-quantum cryptography, research shows
-
The Scattered Spider ransomware group is infiltrating Slack and Microsoft Teams to target vulnerable employees
News The group is using new ransomware variants and new social engineering techniques - including sneaking into corporate teleconferences
-
Hackers breached a 158 year old company by guessing an employee password – experts say it’s a ‘pertinent reminder’ of the devastating impact of cyber crime
News A Panorama documentary exposed hackers' techniques and talked to the teams trying to tackle them
-
The ransomware boom shows no signs of letting up – and these groups are causing the most chaos
News Thousands of ransomware cases have already been posted on the dark web this year
-
Everything we know about the Ingram Micro cyber attack so far
News A cyber attack on Ingram Micro severely disrupted operations and has been claimed by the SafePay ransomware group.
-
A prolific ransomware group says it’s shutting down and giving out free decryption keys to victims – but cyber experts warn it's not exactly a 'gesture of goodwill'
News The Hunters International ransomware group is rebranding and switching tactics
-
Swiss government data published following supply chain attack – here’s what we know about the culprits
News Radix, a non-profit organization in the health promotion sector, supplies a number of federal offices, whose data has apparently been accessed.
-
Ransomware victims are getting better at haggling with hackers
News While nearly half of companies paid a ransom to get their data back last year, victims are taking an increasingly hard line with hackers to strike fair deals.
-
LockBit data dump reveals a treasure trove of intel on the notorious hacker group
News An analysis of May's SQL database dump shows how much LockBit was really making