Swiss train maker tells ransomware crooks to get off at the next stop
Summary
Swiss train manufacturer Stadler has refused to pay a $12.3 million ransom demand from a ransomware group. The attackers claimed to have stolen technical data from Stadler through a compromised supplier platform.
IFF Assessment
FOE
This is bad news for defenders as it highlights a successful ransomware attack that exfiltrated data, and the attackers are demanding a significant ransom.
Defender Context
This incident underscores the persistent threat of ransomware and the importance of securing supply chains. Defenders should focus on robust third-party risk management, strong access controls, and comprehensive incident response plans to mitigate similar attacks.