France

Country

Complicated Situation for Management at French Prison as CyberAttack cuts Power

January 11, 2023

Since Wednesday January 11, the remand center has been plagued by computer difficulties which have caused significant electrical malfunctions. “A virus was installed in the system via a USB key used by a teacher who was giving a lesson to inmates that day,” confirms Julien André, CGT staff representative within the establishment. prison. The computer system was shut down.

The prison was without power last weekend. “Friday evening, the pellets blew, cutting off all the electricity supply to the jail (sic), says Julien André, on duty that day. No more light, no more surveillance cameras.” A complicated situation for the management of the establishment, which had to call in numerous reinforcements.

read more

Operations Disrupted at Montpellier Airport after Weekend Cyberattack

July 2, 2023

Montpellier airport suffered a major cyberattack during the night from Saturday to Sunday, which disrupted its activities. All flights on Sunday were operated, even if they experienced delays. Expectation was for all flight to be “back to normal between this Sunday evening and tomorrow Monday.” With internal operating systems of the various services to return to their usual functioning “during the week”.

read more

French Cosmetics Factory at Standstill after Cyberattack

April 27, 2023

A premiere European maker of cosmetic aerosols reported that Russian cybercriminals attacked their centralized servers in Germany, According to the company’s general manager Ramdane Mansoura, production was shutdown for at least 13 days and 300 employees have been temporarily laid off. Costs are €250K per day of lost production.

read more

Cyberattack hits Multiple Sites of Pharmaceutical Vibrac Group

June 19, 2023

The Virbac Group was the target of a cyber attack on several of its sites worldwide during the night of June 19-20. “As soon as we became aware of the attack, we immediately took steps to contain it. At the same time, we set up a crisis unit including dedicated cybersecurity experts to assess the impact on our systems and organize remediation operations.”

“As a result of this attack, we are currently experiencing a slowdown or temporary interruption of some of our services.”

read more

Databreach Impacts Italian and French Hyundai Car Owners

April 12, 2023

Hyundai has disclosed a data breach impacting Italian and French car owners and those who booked a test drive, warning that hackers gained access to personal data. It is unclear how many Hyundai customers this incident impacts, how long the network intrusion lasted, and what other countries might be affected.

BleepingComputer has contacted Hyundai to learn more about the security incident

read more

Cyberattack at French Manufacturer Groupe SEB

March 14, 2023

Groupe SEB’s IT teams detected an attempt to exploit a vulnerability. After investigations, an intrusion in the Information System has been confirmed. The necessary measures have been taken to limit the effects of this intrusion.

To date, and after extensive research, Groupe SEB has not identified any data leakage or damage to information systems. The incident is currently undergoing a detailed analysis to investigate its origins allowing to reinforce existing security measures.

read more

Lighting Manufacturer, Lumila, Announces ‘Massive Ransomware Attack’

February 3, 2023

French lighting manufacturer Lumila was one of the victims of a ransomware attack on February 3 that targeted several French hosting companies, including Scaleway and OVHCloud. Lumila provides services to the French railways. All services were restored and operational at the time of the announcement [Feb 8].

read more

Databreach at European Telecommunications Standards Institute (ETSI)

September 27, 2023

On 27 September 2023 the European Telecommunications Standards Institute (ETSI) reported that hackers have stolen a database identifying its users.
It is not yet clear whether the attack was financially motivated or if the hackers had intended to acquire the list of users for espionage purposes.

Following the incident, ETSI, which is based in the Sophia Antipolis technology park in the French Riviera, said it brought in France’s cybersecurity agency ANSSI “to investigate and repair the information systems.” The nonprofit said the “vulnerability on which the attack was based has been fixed,” although it did not identify the vulnerability.

read more

Cyberattack Disrupts Paris Wastewater Operations

November 17, 2023

The organization that manages wastewater for nine million people in and around Paris was hit with a cyberattack on Friday. Service public de l’assainissement francilien – known by its acronym SIAAP — manages nearly 275 miles of pipes throughout four French departments. IT teams have worked since Wednesday to secure industrial systems and close off all external connections in order to prevent the attack from spreading.

Officials said they have prioritized measures that allow them to “maintain the continuity of the public sanitation service for Ile-de-France residents.”

“The SIAAP crisis unit remains mobilized to manage the aftermath of this attack and support the continuity of the work of all of its agents from this week in a working environment largely degraded by the current situation,” they said, according to a machine translation of the statement.

“This mobilization will continue until a return to normal can be ensured.”

The organization has set up local systems to answer any questions from the public and said they are in constant communication with various government agencies about the situation.

read more

Airbus IT System Breach Exposes Data from Thousands of Airbus Vendors

September 12, 2023

The European aerospace giant Airbus said on Tuesday that it is investigating a cybersecurity incident following reports that a hacker posted information on 3,200 of the company’s vendors to the dark web. A threat actor using the moniker “USDoD” posted Monday on BreachForums that they obtained access to an Airbus web portal after compromising the account of a Turkish airline employee. The hacker claimed to have details on thousands of Airbus vendors, including names, addresses, phone numbers and emails, according to a report from Hudson Rock.

Airbus spokesperson Philippe Gmerek confirmed to Recorded Future News that hackers breached an “IT account associated with an Airbus customer” and that the company was investigating the incident. This account was used to download business documents dedicated to this customer from an Airbus web portal, the company said.

According to the Hudson Rock, the threat actor posted the leaked information publicly without making any demands. Few details are known about the threat actor or their motivations, but they have said they are a member of the relatively new ransomware group known as “Ransomed.”

read more