Germany

Country

Hackers Paralyze only Newsprinting Facility in Switzerland

January 7, 2022

The machines at the Perlen paper factory in the Lucerne town of the same name are at a standstill due to a hacker attack. Newsprint and LWC production at Perlen and packaging production in Müllheim, Germany, which has been down since 7 January, restarted 6 days later on January 13. The chemistry division was not affected and was therefore able to continue production normally.

The factory normally outputs 1400 tons of newsprint paper per day. In a statement, the CPH Group said all IT systems were shut down on the 7th out of an abundance of caution and to contain any spread, strongly suggesting but not confirming they were a ransomware victim. They resumed production in January 13, after 6 days of downtime.

read more

Cyberattack at Technolit GmbH, Employees sent Home

December 15, 2022

The company Technolit from Grossenlüder is affected by a cyber attack. The company can currently only be reached by telephone at the head office. Most of the employees were sent home because they are currently unable to work. The company’s entire IT department was affected by the attack.

Managing Director Stephan Günther explains the current situation: “We have become the victim of a cyber attack.” The company is currently in contact with the responsible authorities. Further information could not yet be released.

read more

Business Operations Continue Manually After Cyberattack at Textile Logistics Company

December 6, 2022

On December 6th there was a successful cyber attack on the systems of the well-known textile logistics company Meyer & Meyer. The company can still be reached, but various processes had to be converted to manual work. The extent of the damage caused by the cyber attack is currently being checked and the system has started to be restored. “We reacted quickly and decisively to the targeted attack,” says Björn Plantholt, who is responsible for corporate communications at Meyer & Meyer. The company was able to maintain part of the business operations after the cyber attack, despite the systems being shut down, by switching to manual processes.

read more

Ransomware Attack Encrypts Systems at German Medical Device Manufacturer Richard Wolf

November 3, 2022

The medtech company Richard Wolf was the victim of a cyberattack in early November. After almost 3 weeks, almost all restrictions on phones and email accounts have been resolved. By the end of November, all restrictions in the IT of logistics should also be removed. The company is receiving support from an external IT forensic expert to accompany the security process. The cybercriminals were able to infiltrate using sophisticated malware.

Richard Wolf had prepared for precisely this scenario in recent years by taking technical and organizational precautions, employing specialist personnel, conducting internal training and consulting externally. Thanks to the safeguards, systems with data were largely protected, but they were encrypted in order to use them to extort money from the company. The company did not respond to the ransom demand.

read more

Ransomware Attack at German Gas Pipeline Builder, Friedrich Vorwerk, Impacted Profitability

November 20, 2022

Friedrich Vorwerk, a group of companies that builds gas pipelines and thus critical infrastructure (Kritis), was the victim of a cyber attack at the end of last year. Ransomware infected large parts of IT and paralyzed it. Since shortly before Christmas last year, the systems could be used productively again, the company said at the request of heise online. “As a result of a cyber attack that was averted at the end of the year, profitability was also impacted and visibility restricted”.

“During the approximately 4-week work to repair our IT infrastructure, our ERP system and other parts of the infrastructure were not available. Shortly before Christmas 2022, the main effects were remedied and the systems could be used productively again. “

read more

Downtime Caused by Cyberattack Final Straw for German Bicycle Manufacturer

November 25, 2022

On November 25, 2022, Prophete was the victim of a cyber attack. As a result, the attack meant that no production, invoicing or deliveries could take place for around three weeks.

The company stated there were “considerable problems in procurement, which in turn had an impact on sales and turnover. The warehouses are unusually full because the purchasing department has served the target figures. However, due to disrupted supply chains, required parts would not arrive and bicycles could not be fully assembled and delivered.”

The company had planned sales of EUR 210 million, but only achieved EUR 159 million. In June last year there was a financing round with shareholders and lenders from Prophete. However, the willingness to inject more money ended with the break-in of cyber criminals.

read more

Restricted Operations at City of Drensteinfurt, Germany after Cyberattack

November 28, 2022

From an ongoing police procedure, it was determined on Monday that a possible cybercrime attack on the city of Drensteinfurt was being prepared. This is currently being checked and the Münster police have been called in. To be on the safe side, the entire systems have been shut down.

The city administration will be available again by telephone from Wednesday, November 30th, 2022 during normal business hours. The disruption in the IT system continues and only limited operation without IT support is possible until further notice.

The Rinkerode branch will remain closed. The restrictions will last at least until December 9th, 2022. The systems are currently being checked and gradually put back into operation.

read more

Systems at German Wind Turbine Servicing company Windtechnik Targeted

April 11, 2022

On April 11 systems of Deutsche Windtechnik, a German wind turbine servicing company, were targeted by a cyberattack. The company was able to reactivate the remote data monitoring connections to the wind turbines after 1-2 days. The system had been switched off for security reasons. “We are very happy that the wind turbines that we look after did not suffer any damage and were never in danger. Deutsche Windtechnik’s operational maintenance activities for our clients resumed again on April 14 and are running with only minor restrictions. We were able to assess all IT systems in a secure environment and to identify and isolate the problems.” the company stated on their website.

The company disclosed that the attackers used ransomware only after Black Basta added Windtechnik to their victim list, which is posted on their Tor site.

read more

Entire System of Global Energy Provider ista International Hacked in Two Days

August 1, 2022

ista International GmbH announced a cyber attack on its website. All affected IT systems were initially taken offline, resulting in various functions and services being unavailable. The company’s customer portal and email functionality are switched off. ista asks to refrain from contacting them. “We will inform them immediately via our website when the contact options are available again .. you will temporarily be limited or unable to use certain functions and services.”

ista describes the company: “..we already have 400,000 gateways in use for our customers that link over 25 million connected devices to each other”. Daixin Team states they went through one of those gateways and took control of the entire system in two days.

ista International takes care of about 30 million networked devices in 22 countries in the field of sub-metering.

read more

Cyberattack at the Chinese Subsidiary of a German Furniture Manufacturer

August 15, 2022

A Chinese production site of the Hettich Group has involuntarily been the victim of a cyber attack. As yet unknown attackers have hacked the internal networks and deposited malware there. The company’s website states: ” It is not yet possible to say when the Chinese subsidiary will be able to fully access all IT systems again. Local production in China is continuing. As far as we know at present, other companies in the Hettich Group are not affected. From today’s point of view, the ability to deliver to our customers outside China is not limited.”

read more